Mystery malware destroys 600,000 routers from a single ISP during 72-hour span
Mystery malware destroys 600,000 routers from a single ISP during 72-hour span

An unknown threat actor with equally unknown motives forces ISP to replace routers.

Mystery malware destroys 600,000 routers from a single ISP during 72-hour span
An unknown threat actor with equally unknown motives forces ISP to replace routers.
As someone who works with 100Gbps networking:
I imagine the malware binary includes a lua interpreter for executing scripts fetched from its command and control server.
One day last October, subscribers to an ISP known as Windstream
In case anyone only reads the headline
Oh shit, I use Windstream, this explains a lot about why they were so busy replacing everyones routers down here. I had assumed it was just a defective design since they used all the same units for every network, but it was actually malware, wild
the sad thing is this is just routers, think about all of the IoT devices that are compromised due to vendors not caring about patching security issues, just worrying about selling IoT.
insecam.org for a quick demo of insecure devices
Shodan also has a lot of fun searches.
Or having non existent security
Keep firing tech people, the tech peiple will have to find an hobby
And that’s why you should run your own router. Preferably using open firmware/OS like ddwrt or pfSense/opnSense.
I'm curious, does running open source software somehow exempt you from getting malware?