* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Tuesday, May 20, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Palm Beach Council approves Breakers plans for new Family Entertainment Center – Palm Beach Daily News

    Palm Beach Council Greenlights Exciting New Family Entertainment Center at The Breakers!

    Why Was Kanye West’s South Korea Tour Cancelled? – Yahoo

    Unraveling the Mystery: Why Kanye West’s South Korea Tour Was Canceled

    Entertainment Spotlight: ‘Georgie & Mandy’s First Marriage’ – Atlanta News First

    ‘Final Destination: Bloodlines’ tops box office while The Weeknd’s movie falters – Yakima Herald-Republic

    Final Destination: Bloodlines Dominates the Box Office as The Weeknd’s Film Struggles

    Country Music Legend Bids Heartfelt Farewell: ‘Y’all Gonna Make Me Tear Up!

    We won’t get a Game of Thrones show this year: A Knight of the Seven Kingdoms shifts to early 2026 – Entertainment Weekly

    Game of Thrones Fans Will Have to Wait: A Knight of the Seven Kingdoms Delayed Until 2026!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    We Think GigaCloud Technology’s (NASDAQ:GCT) Solid Earnings Are Understated – Yahoo Finance

    Unlocking Potential: Why GigaCloud Technology’s Impressive Earnings Deserve More Recognition

    JPMorgan Chase plans to spend $18B in technology in 2025 (JPM:NYSE) – Seeking Alpha

    JPMorgan Chase Unveils Ambitious $18 Billion Tech Investment Plan for 2025!

    Nvidia plans to sell tech to speed AI chip communication – The Indian Express

    Nvidia Unveils Game-Changing Technology to Accelerate AI Chip Communication!

    Murfreesboro LPR technology helps catch suspect in Henry County homicide case – WKRN News 2

    Murfreesboro LPR technology helps catch suspect in Henry County homicide case – WKRN News 2

    How will BCI technology change the lives of people with disabilities? – news.cgtn.com

    Transforming Lives: The Impact of BCI Technology on People with Disabilities

    Super Speeders are deadly. This technology can slow them down. – Popular Science

    Revolutionary Technology: Taming the Threat of Super Speeders!

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Palm Beach Council approves Breakers plans for new Family Entertainment Center – Palm Beach Daily News

    Palm Beach Council Greenlights Exciting New Family Entertainment Center at The Breakers!

    Why Was Kanye West’s South Korea Tour Cancelled? – Yahoo

    Unraveling the Mystery: Why Kanye West’s South Korea Tour Was Canceled

    Entertainment Spotlight: ‘Georgie & Mandy’s First Marriage’ – Atlanta News First

    ‘Final Destination: Bloodlines’ tops box office while The Weeknd’s movie falters – Yakima Herald-Republic

    Final Destination: Bloodlines Dominates the Box Office as The Weeknd’s Film Struggles

    Country Music Legend Bids Heartfelt Farewell: ‘Y’all Gonna Make Me Tear Up!

    We won’t get a Game of Thrones show this year: A Knight of the Seven Kingdoms shifts to early 2026 – Entertainment Weekly

    Game of Thrones Fans Will Have to Wait: A Knight of the Seven Kingdoms Delayed Until 2026!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    We Think GigaCloud Technology’s (NASDAQ:GCT) Solid Earnings Are Understated – Yahoo Finance

    Unlocking Potential: Why GigaCloud Technology’s Impressive Earnings Deserve More Recognition

    JPMorgan Chase plans to spend $18B in technology in 2025 (JPM:NYSE) – Seeking Alpha

    JPMorgan Chase Unveils Ambitious $18 Billion Tech Investment Plan for 2025!

    Nvidia plans to sell tech to speed AI chip communication – The Indian Express

    Nvidia Unveils Game-Changing Technology to Accelerate AI Chip Communication!

    Murfreesboro LPR technology helps catch suspect in Henry County homicide case – WKRN News 2

    Murfreesboro LPR technology helps catch suspect in Henry County homicide case – WKRN News 2

    How will BCI technology change the lives of people with disabilities? – news.cgtn.com

    Transforming Lives: The Impact of BCI Technology on People with Disabilities

    Super Speeders are deadly. This technology can slow them down. – Popular Science

    Revolutionary Technology: Taming the Threat of Super Speeders!

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

‘Mirai-like’ botnet observed attacking EOL Zyxel NAS devices

June 24, 2024
in Technology
‘Mirai-like’ botnet observed attacking EOL Zyxel NAS devices
Share on FacebookShare on Twitter

There are early indications of active attacks targeting end-of-life Zyxel NAS boxes just a few weeks after details of three critical vulnerabilities were made public.

The Shadowserver Foundation, an internet security organization partnered with many of the world’s top security agencies and vendors, said its scanners started beeping on Friday as it continues to monitor CVE-2024-29973.

It observed multiple remote command execution attempts “by a Mirai-like botnet” and advised owners of affected Zyxel NAS devices to actively search for signs of compromise, especially if the patches weren’t applied immediately.

It also might be a good idea to just rip and replace the kit if it is still running, given that it’s fairly uncommon for vendors to release security updates for devices that have already reached their end of support.

Shadowserver told us the Mirai-based botnet shares characteristics with its famous Linux botherder ancestor, without sporting “exactly the same code base as the original.” We know that Mirai spun up once again last year with researchers at the time saying it was bolstered with an “aggressively updated arsenal of exploits,” which included those for D-Link and, yes, Zyxel devices.

CVE-2024-29973 is one of the three critical bugs patched in early June, all of which received a near-maximum 9.8 severity rating. It’s a command injection flaw affecting Zyxel NAS326 and NAS542 devices that could be exploited by unauthenticated attackers.

Shadowserver mentioned nothing of the other two – CVE-2024-29972 and CVE-2024-29974 – in its Friday update. The first is another command injection bug and the second a remote code execution flaw.

The vulnerabilities were discovered by an intern at Outpost24 and reported to Taiwan-based Zyxel in March. Both Timothy Hjort, the researcher, and Zyxel disclosed the bugs on June 4, with Hjort also providing proof of concept (PoC) exploit code in his write-up, meaning it was probably inevitable that these types of attacks would start cropping up.

D-Link issues rip and replace order for besieged NAS drives

That home router botnet the Feds took down? Moscow’s probably going to try again

Feds dismantle Russian GRU botnet built on 1,000-plus home, small biz routers

Vast botnet hijacks smart TVs for prime-time cybercrime

NAS devices are prime targets for cyberattacks, usually involving ransomware. QNAP’s boxes have been hit especially hard, with the Qlocker and DeadBolt variants in 2021 and 2022 garnering plenty of attention.

It’s not just ransomware that threatens NAS devices generally, though. As Trend Micro’s Stephen Hilt and Fernando Mercês said back in 2022, cryptominers and botnet operators saw opportunity in the Internet of Things long ago.

“Botnet infections and attacks have run rampant in IoT devices since 2016, mainly due to botnets’ capability to spread infections to as many hosts as possible, all in the name of helping cybercriminals achieve their many aims, such as launching distributed denial-of-service (DDoS) attacks,” they wrote. 

“NAS devices are ideal targets due to the minimal security defenses and protection installed in them, which are not enough once attackers have compromised one. Moreover, even older malware types and infections can remain undetected in these IoT devices for years due to lack of patching, further increasing the risks for NAS users due to the number of potential illicit use in addition to DDoS, such as information theft and proxy networks.”

Owners of affected Zyxel NAS326 devices should install the V5.21(AAZF.17)C0 patch ASAP if they haven’t already, and the V5.21(ABAG.14)C0 applies to the Zyxel NAS542. Or just upgrade the kit where possible for the most up-to-date security. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/24/mirailike_botnet_zyxel_nas/

Tags: botnetMirai-like'technology
Previous Post

Switchy: Smart link engagement platform

Next Post

Linux geeks cheer as Arm wrestles x86

Uzbek Ecology Officials’ Study Trip to Finland – Mirage News

Uzbek Ecology Officials’ Study Trip to Finland – Mirage News

May 20, 2025
The Roots of Dementia Trace Back All The Way to Childhood, Experts Say – ScienceAlert

The Roots of Dementia Trace Back All The Way to Childhood, Experts Say – ScienceAlert

May 20, 2025
Science Olympiad National Tournament to draw 2,000-plus to Nebraska U | Newswise – Newswise

Excitement Builds as Over 2,000 Competitors Gear Up for the Science Olympiad National Tournament at Nebraska University!

May 20, 2025
Katie Price reveals real reason for her weight loss: ‘It’s driving me mad’ – The Independent

Katie Price Opens Up About Her Weight Loss Journey: “It’s Driving Me Mad!

May 20, 2025
Column | How ancient India changed the world – The Washington Post

Unveiling the Impact of Ancient India on Global Civilization

May 20, 2025
How Much Does Biopharma Contribute To The US Economy? – insights.citeline.com

How Much Does Biopharma Contribute To The US Economy? – insights.citeline.com

May 20, 2025
Palm Beach Council approves Breakers plans for new Family Entertainment Center – Palm Beach Daily News

Palm Beach Council Greenlights Exciting New Family Entertainment Center at The Breakers!

May 20, 2025
Biden’s prostate cancer: What happened, how serious is Gleason score 9? – Al Jazeera

Understanding Biden’s Prostate Cancer: The Implications of a Gleason Score 9

May 20, 2025
Cracks emerge in MAHA-MAGA alliance as RFK Jr. builds out his team of health ‘renegades’ – CNN

Cracks in the MAHA-MAGA Alliance: RFK Jr. Assembles a Team of Health ‘Renegades

May 20, 2025
We Think GigaCloud Technology’s (NASDAQ:GCT) Solid Earnings Are Understated – Yahoo Finance

Unlocking Potential: Why GigaCloud Technology’s Impressive Earnings Deserve More Recognition

May 20, 2025

Categories

Archives

May 2025
MTWTFSS
 1234
567891011
12131415161718
19202122232425
262728293031 
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (622)
  • Economy (635)
  • Entertainment (21,549)
  • General (15,223)
  • Health (9,677)
  • Lifestyle (640)
  • News (22,149)
  • People (638)
  • Politics (643)
  • Science (15,859)
  • Sports (21,145)
  • Technology (15,626)
  • World (625)

Recent News

Uzbek Ecology Officials’ Study Trip to Finland – Mirage News

Uzbek Ecology Officials’ Study Trip to Finland – Mirage News

May 20, 2025
The Roots of Dementia Trace Back All The Way to Childhood, Experts Say – ScienceAlert

The Roots of Dementia Trace Back All The Way to Childhood, Experts Say – ScienceAlert

May 20, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version