Tag Archive for: devices

A vigilante is putting a huge amount of work into infecting IoT devices

Enlarge (credit: Gammew)

Last week, Ars introduced readers to Hajime, the vigilante botnet that infects IoT devices before blackhats can hijack them. A technical analysis published Wednesday reveals for the first time just how much technical acumen went into designing and building the renegade network, which just may be the Internet’s most advanced IoT botnet.

As previously reported, Hajime uses the same list of user name and password combinations used by Mirai, the IoT botnet that spawned several, record-setting denial-of-service attacks last year. Once Hajime infects an Internet-connected camera, DVR, and other Internet-of-things device, the malware blocks access to four ports known to be the most widely used vectors for infecting IoT devices. It also displays a cryptographically signed message on infected device terminals that describes its creator as “just a white hat, securing some systems.”

Not your father’s IoT botnet

But unlike the bare-bones functionality found in Mirai, Hajime is a full-featured package that gives the botnet reliability, stealth, and reliance that’s largely unparalleled in the IoT landscape. Wednesday’s technical analysis, which was written by Pascal Geenens, a researcher at security firm Radware, makes clear that the unknown person or people behind Hajime invested plenty of time and talent.

Read 5 remaining paragraphs | Comments

Technology Lab – Ars Technica

Pixel XL devices accidentally receive ‘Googlers-only OTA’ of next Android security update – 9to5Google


9to5Google

Pixel XL devices accidentally receive 'Googlers-only OTA' of next Android security update
9to5Google
Google frequently uses their employees to dogfood updates before they are released to the public. Earlier this evening, a “confidential Googlers-only OTA” appears to have inadvertently been pushed to some Pixel XL devices.

android security – read more

‘Find My iPhone’ foils pickpocket who swiped 100 devices: police

You might think that a pickpocket skilled enough to steal 100 cellphones, pictured above, would also be savvy enough to know that at least the iPhones in that haul carry a means to foil his caper.

Then again, you might be giving the crook too much credit.

From a story on the website of a Boston television station:

A New York man was arrested at the Coachella music festival in Southern California after he was found with more than 100 stolen cellphones, according to Indio police.

During the concert festival on Friday, several people noticed their phones were missing and immediately activated the “Find My Phone” feature on their mobile devices.

To read this article in full or to leave a comment, please click here

Network World Security

For a while the infamous Mirai botnet could have exploited your IoT devices to mine Bitcoins

For a while the infamous Mirai botnet could have exploited your IoT devices to mine Bitcoins

IoT-exploiting malware like Mirai is continually evolving, as online criminals look for new ways to make money.

David Bisson reports.

Graham Cluley