Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

RÜFÜS DU SOL makes EDM history at Madison Square Garden

Leonard Cohen Estate Opposes ‘Hallelujah’ at Donald Trump Rally

The tension on FOX Sports shows reflects our country’s political situation.

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » New AQUABOT BOTNET EXPLOITES DDOS MITEL Phone CVE-2024-41710
Celebrities

New AQUABOT BOTNET EXPLOITES DDOS MITEL Phone CVE-2024-41710

By January 30, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

LingeringJanuary 30, 2025LingeringRavy LakshmananVulnerability / IoT security

Aquabot botnet

Aquabot, a Mirai Botnet Vararinant, is actively actively and actively involved in a network that can attach a dispersed (DDOS) attack by utilizing the moderate security defects that affect MITEL telephone. It has been observed to be exploiting.

The vulnerability in question is CVE-2024-41710 (CVSS score: 6.8). This is the case of a command injection in a boot process that allows you to run any command in a telephone context.

It affects the MITEL 6800 series, 6900 series, 6900W series SIP phone, MITEL 6970 Conference Unit. This was addressed by Maitel in mid -July 2024. The abuse of defective concept demonstration (POC) was released in August.

Cyber ​​security

Other than the CVE-2024-41710, some of the other vulnerabilities targeted by the botnet include CVE -2018-10561, CVE -2018-10562, CVE-2018-17532, CVE-2012-31137, CVE-2023-26801 and A are included. Linksys E-Series A defect in remote code execution targeting devices.

“Aquabot is a botnet built from the Mirai framework with the ultimate goal of the distributed service refusal (DDOS),” said Akamai researcher Kail Lefon and Rally Cashdler. “It has been known since November 2023.”

Web Infrastructure Company has detected aggressive exploitation attempts for CVE-2024-41710 since early January 2025, and states that the attack reflects “almost the same POC” that develops botnet malware. Ta.

Attacks include running a shell script to get Aquabot in various CPU architectures using the “WGET” command.

The Aquabot Mirai Vararinity found in the attack has been evaluated as the third repetition of malware and reports to the command and control (C2) server when a kill signal is caught by an infected person, “Report_kill” It is equipped with a function. device. However, the transmission of this information has not been known to bring out the response from the server.

This new version is renamed “httpd.x86” in addition to triggering C2 communication when a specific signal is detected, to avoid drawing attention, and matches certain requirements such as local shells. It is programmed to end the process. It is suspected that the signal processing function is likely to be incorporated to create more stealth variants and detect malicious activities from competing botnets.

Several a threat person behind Aquabot suggests that the infringed host network is provided as a DDOS service as a Telegram DDOS service under the monar Cursinq firewall, eye service, and an iconette. There is evidence.

Cyber ​​security

This development is a sign that MIRAI often lacks appropriate security functions or has reached the end -of -life period, and continues to bother devices connected to a wide Internet that can be accessed in the default configuration and password. is. For exploitation for DDOS attacks and important conduit.

“Threat -threatening stakeholders claim that botnets are used only for the purpose of the DDOS easing test and try to misunderstand researchers or law enforcement,” researchers said.

“Threat -related stakeholders claim that it is mere POC or something educational, but deeper analysis indicates that DDO is actually advertising as a service.

Did you find this article interesting? Follow on Twitter and Linkedin and read the exclusive content to post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleThe startupswan of the European embedded bank adds more $ 44 million to Series B.
Next Article Biden approves the ultimate big batch of the forgiveness of the student loan

Related Posts

Rocket Williams and Helen Lasichan appear at the Louis Vuitton men’s show

June 24, 2026

Kristen Stewart shows off Chanel cruise style at Biarritz Film Festival

June 24, 2026

Ellie Goulding wears Matiere Fécairess at the Serpentine Summer Parry

June 24, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

RÜFÜS DU SOL makes EDM history at Madison Square Garden

Leonard Cohen Estate Opposes ‘Hallelujah’ at Donald Trump Rally

The tension on FOX Sports shows reflects our country’s political situation.

Billy Idol and guitarist Steve Stevens appear at Hollywood Rockwalk

Trending Posts

RÜFÜS DU SOL makes EDM history at Madison Square Garden

June 25, 2026

Leonard Cohen Estate Opposes ‘Hallelujah’ at Donald Trump Rally

June 25, 2026

Billy Idol and guitarist Steve Stevens appear at Hollywood Rockwalk

June 24, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.