Automatically translated.View original post

A new malware to turn a Network device into a DDoS.

A new malware has been found that turns the Network device into a DDoS tool.

Distributed Denial-of-Service System Shooting Usually requires some tools to collect the machine that will be used to shoot the system. Most often, botnet malware is used to convert victims' devices that are not involved around the world into zombies in system shooting, and this news is once again one of the spread of this type of malware.

According to a report by the website, Cyber Security News has mentioned the detection of a Botnet malware outbreak campaign to be used to shoot DDoS. The malware focuses on various network related devices - routers, IoT devices (Internet of Things), and enterprise network management devices (Enterprise). There are three malware spread in this campaign: Botnet malware CondiBot for DDoS embedded on network management devices running on Linux and Monaco malware type scans. Secure Shell to attack the system or SSH Scanner, and finally Monero, a malware for mining the Monero genus of Crypto Miner that will be released by the Monaco malware after it has been successfully embedded on the system. All of these malware was detected in the beginning of March. The first two are new malware that have never been recorded on famous malware detection tools like VirusTotal, ThreatFox, and Hybrid Analysis before.

According to a research team from Eclypsium, a supply chain attack specialist, it can be noted that the malware spread behavior is unlikely to come from state-sponsored hackers, but it is likely from hackers who hope to use the victim's machine resources to dig and profit more from mined coins. These hackers tend to use security vulnerabilities on the victim's machine, especially those that occur during the development of the system or Zero-Day, often in particular. And even more dangerous, the devices that hackers focus on in this campaign are usually those that cannot run normal security monitoring tools, so that both hackers and malware can be embedded in the system for a long time without being detected.

For malware attacks, CondiBot starts with hackers using File Transfer Utility tools such as wget, curl, tftp, and ftpget. Send payload files on a Linux device with a security vulnerability (the source does not specify which vulnerability). After the payload is deactivated on the target system, the malware closes the Reboot Utility tool by changing the permissions of the corresponding files to 000. Then contact the C2 or Command and Control server and register the specified number. Unique Bot Identifier

After registering, the malware will immediately enter the Waiting Loop and receive commands from the C2 server. Once ordered, the malware will send one of the 32 Attack Handlers to act immediately. The malware also has the ability to remove any other Botnet malware that may be on board, as well as to handle a process called / bin / sora so that the malware can take over the machine completely. With such perfect operation, it is very difficult to deal with the malware, in addition to Will have direct access to the machine itself to handle it.

# Trending # Lemon 8 Howtoo # lemon 8 diary # freedomhack # ddos

4/9 Edited to

... Read moreจากประสบการณ์ส่วนตัวในการทำงานกับระบบเครือข่าย พบว่าอุปกรณ์เน็ตเวิร์กต่าง ๆ เช่น เราเตอร์ หรืออุปกรณ์ IoT มักมีการตั้งค่าความปลอดภัยที่ไม่รัดกุม ทำให้เป็นเป้าหมายของมัลแวร์อย่าง CondiBot ที่สามารถเจาะเข้ามาผ่านช่องโหว่ Zero-Day ได้อย่างง่ายดาย มัลแวร์ CondiBot มีวิธีการโจมตีที่ซับซ้อน เช่น การใช้เครื่องมือส่งไฟล์ เช่น wget, curl เพื่อดาวน์โหลดตัว Payload ลงบนระบบเป้าหมาย และเมื่อฝังตัวสำเร็จแล้วจะปิดการทำงานของเครื่องมือรีบูท ทำให้ยากต่อการขจัด โดยมัลแวร์ยังสามารถติดต่อกับเซิร์ฟเวอร์ควบคุม (C2) เพื่อรอรับคำสั่งโจมตีและลบมัลแวร์ประเภท Botnet ตัวอื่นที่ทำงานพร้อมกัน เพื่อรักษาความเป็นเจ้าของเครื่อง ในฐานะที่ดูแลระบบเครือข่ายร่วมกับทีม ผมแนะนำให้เจ้าของระบบเร่งอัปเดตซอฟต์แวร์และเฟิร์มแวร์ของอุปกรณ์ รวมถึงตั้งค่าการป้องกันที่แข็งแกร่ง เช่น ปิดพอร์ต SSH ที่ไม่จำเป็น หรือใช้การยืนยันตัวตนแบบหลายขั้นตอน กล่าวคือหากอุปกรณ์ใดมีช่องโหว่หรือไม่ได้รับการป้องกันอย่างเหมาะสม ก็จะกลายเป็นเครื่องมือโจมตี DDoS ที่อยู่เบื้องหลังระบบล่มโดยไม่รู้ตัว อีกประเด็นที่สำคัญคือการตรวจสอบระบบด้วยเครื่องมือที่เหมาะสม เนื่องจากมัลแวร์ CondiBot สามารถซ่อนตัวได้ดีและไม่แสดงตัวในเครื่องมือตรวจจับทั่วไป การทำระบบมอนิเตอร์ความผิดปกติของทราฟฟิกเครือข่าย ซึ่งสามารถบ่งชี้พฤติกรรมอ๊อฟไลน์หรือพฤติกรรม Botnet ได้เป็นสิ่งจำเป็น สุดท้าย การให้ความรู้กับผู้ดูแลระบบและผู้ใช้งานเกี่ยวกับอันตรายจากมัลแวร์กลุ่ม Botnet และวิธีการรักษาความปลอดภัยขั้นพื้นฐาน จะช่วยลดความเสี่ยงในการถูกโจมตีและเพิ่มความมั่นคงปลอดภัยให้กับระบบเครือข่ายและองค์กรโดยรวมได้มากขึ้น

Related posts

Turn Jumbled Ideas into a Content Plan
A cozy creator prompt for sorting through messy thoughts when your brain feels too full to start. Use AI to organize what’s already in your head into clear themes, possible post ideas, and one simple place to begin. Perfect for overwhelmed creators who need a softer way to plan content without sta
Bytes' Atelier

Bytes' Atelier

2 likes

A Doctor Killed 11 People — But When You Hear Why, You Won't Know What to Feel #KoreanMovie #MovieRecap #PlotTwist #DarkJustice #MustWatch
Lijianmovie

Lijianmovie

0 likes

Remote into a Computer on a Different Network
Need to remote into a computer on a different network? You don't need complex port forwarding or a VPN. In this video, I'll show you how to do it fast using AnyViewer. Simple setup, secure connection, and smooth control. #remote #pc #network #connection
SmoothTechie

SmoothTechie

0 likes

A young woman with long dark hair, wearing a pink satin shirt, smiles at the camera while sitting at a table. Overlay text reads: 'Tools and sites I use as a cybersecurity student to progress my skills and keep me interested in studying'.
A screenshot of 'The Hacker News' website, displaying various cybersecurity news articles from January 2025, including topics like vulnerabilities, malware, cyber espionage, and AI jailbreak methods. An ad for Zscaler and a banner for CIS Hardened Images are also visible.
A screenshot of the O'Reilly learning platform, showing various books and expert playlists related to AI, engineering, and data. Overlay text highlights the subscription cost ($50/month or $499/year) and its value for accessing books and live events.
Tools and sites I use as a cybersecurity student 🌸
#cybersecuritystudent #cybersecurity #techgirlie
LexiStudies

LexiStudies

107 likes

🔒 Forgot Apple ID&Password?Let's Activate iPhone
Stuck on Activation Lock because you forgot your Apple ID or password? This video explains official ways to recover access and activate your iPhone safely using Apple account recovery options. #appletips #appleaccount #appleid #passwordrecovery #iostips
XanthusTechCore

XanthusTechCore

43 likes

for the low energy days frfr
Some days I don’t need a 10-step productivity system. I need something gentle enough for a tired brain. Here are 3 AI prompts I use when I’m overwhelmed: 1. “Help me pick the 3 most important things I need to do today. Keep it realistic.” 2. “Turn this messy brain dump into a simple checkli
Bytes' Atelier

Bytes' Atelier

6 likes

@supermonkeycutiep2 @Speedy Ape 345 @Ape coertr Sours @nicksuperwoman @jSpeedy Ape you better come to me now I'm not playing around @Monkey Cute
aprilsours77

aprilsours77

1 like

#tiktokrundowncontest #filmbreaker #moviereview #usmovies
🐒MonóPelis🍿

🐒MonóPelis🍿

4 likes

Day 3 of 31: 31 days to a safer you. Did you know hackers can turn on your webcam without you ever noticing? 🎥👀 it happens when malware sneaks onto your device and gives cybercriminals access to your camera. That means your most private moments could be exposed. ✅ Here’s how to protect yours
Cybersecurity Girl

Cybersecurity Girl

21 likes

my robot 🤖
I made a book about this robot and his life. My son did the rough drawings and we used AI to animate it. I call them botanibots #animation #ai #digitalart
Bytes' Atelier

Bytes' Atelier

2 likes

Track it. Sign it. Done.
viloemanillow

viloemanillow

0 likes

What is CPTSD? Explained by a battle unicorn 🦄 #cptsd #battleunicorn #bethechange #mommyoftherepublic #fyp
jackieoftherepublic

jackieoftherepublic

0 likes

An illustration featuring a laptop, smartphone, tablet, and printer on a desk, with a potted plant. The image has a teal background and white text that reads "CYBER SECURITY LIFE HACKS AND CHEATCODES."
A comprehensive list of various cybersecurity job roles and career paths, categorized by areas such as Security Code Auditor, Architecture, Networking, Audit, Cloud, Offensive, Operations, Compliance, Education, Privacy, Engineering, Sales, Generalist, Threat, and Governance.
An infographic titled "SECURITY TECHNOLOGIES" illustrating nine cybersecurity concepts: Firewall, IDS, IPS, XDR, EDR, Honeypot, SIEM, DLP, and VPN, each with a cartoon child and a brief description of its function.
This could help you in the long run in cyber
#unfiltered #lemon8challenge As someone who has been in tech for now 5 year and just recently started into cybersecurity 💻 here are some like codes and hack that can help you in school and to also break into tech like myself‼️ #cybersecurity #womenintech #blackwomenintech #Lemon8 #l
Affinity B

Affinity B

233 likes

Perform Automatic Repair Loop on Wndows 11 Easily
Stuck on startup loop on Windows 11? Here is how to automatic repair loop on Windows 11. And I use this free backup and restore software for full PC protection. #AutomaticRepair #AOMEIBackupper #WindowsGuide #PCBackup #SystemRestore
RealUserTech

RealUserTech

0 likes

No more ads! (free)
Learn the free secrets to block all ads on your mobile devices and games! Say goodbye to interruptions and enjoy a smoother experience. Follow these simple steps now! Tags: #AdBlockFree #MobileTips #GamingHacks #TechTutorial #StopAds
NetGuard Technologies, LLC

NetGuard Technologies, LLC

0 likes

Padres esta es una aplicación ideal para supervisar y proteger el uso de teléfono de nuestros hijos (míralo completo en mi canal ) #creatorsearchinsights #parentinghacks #hack #latinosenusa #estadosunidos🇺🇸 #usa #tikcotech #youtube
Unamanabaenmiami🇺🇸🇪🇨

Unamanabaenmiami🇺🇸🇪🇨

36 likes

How to Make a Dyson Sphere in Sandboxels
#dysonsphere #science #sciencegames #gaming #pixelart
R74n

R74n

7 likes

Drunk Woman Kicked Out of Airport After Extreme Meltdown #cops #bodycamcops
Tops Moment 👮🏻‍♂️

Tops Moment 👮🏻‍♂️

1 like

Make your home a little bit Smarter ✨💡🏡
💡🏡This tiny device can power up your devices with Amazon Alexa or Google Home. #CapCut #smarthome #smarthomeideas #hometech #shareyourthoughts
SalePriceDre

SalePriceDre

4 likes

Remote into a Computer on Another Network
Wondering how to remotely access a computer on another network? In this video, I break it down step by step using AnyViewer. Great for remote support, working from home, or accessing files anywhere. #remotework #remote #pc #network #connection
TechEase

TechEase

6 likes

TikTok updates its privacy policy
Carlysle

Carlysle

1 like

Olas just wandeing off at Disneyland Paris at the New World of Frozen coming next March! Beyond cute #disneyland #WorldOfFrozen #frozen #disneyadventureworld #disneylandparis
gez9knzxvzz

gez9knzxvzz

1 like

Cybersecurity glossary A to Z
The cybersecurity field keeps evolving, so knowing the core terms matters. Here is an A-to-Z guide to key cybersecurity concepts worth understanding 😎👆 Find high-res pdf ebooks with all my cybersecurity related infographics at https://study-notes.org #cybersecurity #infosec #informatio
Dan Nanni

Dan Nanni

4 likes

How To Create Wrapping Paper To Sell With Printfy!
Yes you read it right! You can create your own wrapping paper as a side hustle for FREE! Free game y'all! You may be asking how to market. Join crafting Facebook groups, gifting groups, anything with gifts or crafting. Make posts about how you create images and customize gift wr
NoFaceAllBags

NoFaceAllBags

20 likes

cable for your firestick or android device
stop paying high cable bills
DIRTYWORLDTV

DIRTYWORLDTV

1 like

Can I ask you a question? How cute is this new design guys just in time for the holidays who wants to waddle a penguinlotol into your life? Let me know in the comments if you want one ! # #supportsmallbusiness # #3dprintertiktok # #kawaiiaesthetic # #pocketpets
Lunaras Treasure Trove

Lunaras Treasure Trove

1 like

SOS!!! Wha do you do if you click a phishing email link… two times?!? So far I have: 1, added two factor sign on 2, changed my passwords 3, stress cried and spiraled But for real. What do you do… how do I know if there is now malware (? Is that what it’s called ?) living on my computer?!?
Alexandra Wildeson

Alexandra Wildeson

2 likes

Buy Bitcoin
I won’t steer you wrong #discord #bitcoin first then the world #meme #explore #kibinomics
Kibirushin

Kibirushin

1 like

eSIM for 1USD only
😄😄😄the world's first eSIM app that allows you to travel hassle free
Esimbo eSIM

Esimbo eSIM

1 like

How to Fix UE4 Crashes?
Sudden crashes while gaming… 😱 We've summarized the common causes in Unreal Engine 4 and solutions you can try immediately! Plus, backing up your system is essential to prevent data loss from crashes. Stay protected with AOMEI Backupper! 🎁 Limited 30-day code: AMAB-9RV3F-DNLO8-LGDYR #unrea
SmoothTechie

SmoothTechie

1 like

Reusable AI Prompts for Dashboards, Databases...
Notion Skills Prompt Pack for turning your ideas into reusable Notion AI workflows. Includes 5 prompt cards for dashboards, databases, workflows, projects, and content planning. Save each prompt as a Notion page, mark it as a Skill, and reuse it whenever you need a simple system. #aiprompts #ai
Bytes' Atelier

Bytes' Atelier

8 likes

Quick IPhone secret-ready?🥳 #iphonetips #ios26 #iphone #ios #tech
Amelia

Amelia

9 likes

Posting this again because everyone deserves to know . Instagram maps is sharing your exact location to all your followers. They say it’s turned off by default but many say theirs was on #instagram #news #technews #instagrammap
Cybersecurity Girl

Cybersecurity Girl

24 likes

Network Security
In today's interconnected world, network security is more crucial than ever. As technology advances, cyber threats are becoming increasingly sophisticated, putting your personal data and business at risk. In this video, we'll delve into the basics of network security, explaining what it is,
Olo_Bugenyi

Olo_Bugenyi

1 like

Basic IT Knowledge: Cybersecurity Basics
🔒 BASIC IT KNOWLEDGE: CYBERSECURITY BASICS 🔒 You lock your front door. You protect your wallet. So why wouldn’t you protect your digital life too? 👀 Cybersecurity is all about protecting your devices, accounts, and personal information from online threats. That means staying safe fro
ITwDee

ITwDee

2 likes

18-year-old John actually made $250,000 so easily!
Title: 💸 A Solo Miner with 70 TH/s Just Hit a Bitcoin Block & Earned 3.128 BTC… Here’s Why Gen Z Should Pay Attention to the Bitaxe (BTIXAE) Cover text idea for image: “$200K from a desk corner? It’s not a meme — it’s a Bitaxe.” Caption: Imagine waking up, checking your phone, and se
STARMINER SHOP

STARMINER SHOP

1 like

A vibrant cover image featuring Anjali Viramgama amidst confetti, with the title "Top Cybersecurity Certificates." It highlights key certifications for advancing skills and knowledge in cybersecurity.
A card detailing the Certified Information Security Manager (CISM) certification. It explains CISM focuses on managing information security programs, covering risk management, governance, and incident response.
A card detailing the Certified Ethical Hacker (CEH) certification. It explains CEH focuses on ethical hacking and penetration testing, covering topics like network scanning, malware threats, and social engineering.
Top Cybersecurity Certificates
There are several reputable cybersecurity certifications that can help you advance your skills and knowledge in the field of cybersecurity. 1. Certified Information Systems Security Professional (CISSP): - CISSP is a globally recognized certification that covers a wide range of cybersecurit
anjali.gama

anjali.gama

111 likes

A phone screen displays eSIM settings, showing an active AT&T eSIM with a phone number, an option to add a new eSIM, and primary SIM settings.
The title of an article, 'What Can Someone Do With Your SIM Card? (How To Secure It)', published on February 8, 2024, with author details.
Text discussing the risks of a stolen SIM card, including an example of $68,000 stolen via a SIM swap, and noting the rise in SIM card attacks.
my physical sim card from my original AT&T smartphone has been stolen out of my Samsung Galaxy Fold7
Dougintime

Dougintime

5 likes

Your book complete? We turns it into income @ EBSP
Go to: eBookSecurityPros.com 💰 Claim your creative & financial independence - starting NOW! 🤑 We take your books & ideas and GIVE YOU A BUSINESS! PASSIVE INCOME! We take your notes, Word document, .pdf, manuscript, or finished paperback book and convert it into an interactive eBook
ebooksecuritypros.com

ebooksecuritypros.com

1 like

Travel apps you need before you leave pt.1 🌎
Top 5 Must-Have Apps for Your Solo Travel Adventure (Trust me, they’ll save your butt!) 🚀✈️🌍 1. Google Maps – Your best friend when you’re lost (which will be…often). It’s like a personal GPS that never judges you for taking the wrong turn. Bonus points: It can help you avoid sketchy back alleys
Nyah Misfit

Nyah Misfit

503 likes

Back Up Outlook Emails to an External Hard Drive
Need to back up your Outlook emails to an external hard drive? Here are 2 simple methods to help you out. Download AOMEI Backupper and give it a try! #backup #outlook #externalharddrive
SmoothTechie

SmoothTechie

1 like

Security Camera🫶🫶🫶🫶
John_Devis

John_Devis

0 likes

See more