Re: Mirai botnet is back — now as "Meris"

Töma Gavrichenkov ximaera at gmail.com
Thu Sep 9 17:07:22 UTC 2021


Peace,

On Thu, Sep 9, 2021 at 7:57 PM Brandon Svec via NANOG <nanog at nanog.org> wrote:
> Oof.  I wonder if there is any connection to their DDNS service outage a couple days ago?
> https://forum.mikrotik.com/viewtopic.php?t=178256

No, hardly any.  That one seems to be just a DNS abuse
reporting/delegation issue.

...well, by some wild extension one could imagine that the botnet
operator reported some fake issue just to have the vendor's
infrastructure blocked.  Therefore, IoT vendors that don't enforce
security updates on the devices they sell, should expect criminals to
go to great lengths to keep their update servers and the
infrastructure down once some RCE vulnerabilities are found.  But
that's a wild extension.

--
Töma


More information about the NANOG mailing list