* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Tuesday, May 26, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Revitalizing Downtown Los Angeles: New Entertainment Zones Aim to Ignite Economic Growth

    ‘The Mandalorian and Grogu’ wastes a potentially brilliant era of ‘Star Wars’ – Space

    ‘Mandalorian and Grogu’ tops charts and ‘Obsession’ grows in second weekend – Scripps News

    From Wall Street to the Gaming World: Penn Entertainment CFO Felicia Hendrix’s Inspiring Journey

    Discover the Amazing New Animal Ambassadors Arriving at Green Briar!

    The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Pope Leo Sounds Alarm: Artificial Intelligence Could Endanger Humanity

    RBI sets up panel to examine potential of quantum technology in financial sector – TradingView

    How Great Steppe Stayed Connected Before Modern Technology – The Astana Times

    How Human Connection Breaks Through Technology at Focus Art Fair

    Hudson County Schools of Technology Slashes Programs, Leading to 20 Job Losses

    Director Andrea Saia gains stock and RSUs at Align Technology (NASDAQ: ALGN) – Stock Titan

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Revitalizing Downtown Los Angeles: New Entertainment Zones Aim to Ignite Economic Growth

    ‘The Mandalorian and Grogu’ wastes a potentially brilliant era of ‘Star Wars’ – Space

    ‘Mandalorian and Grogu’ tops charts and ‘Obsession’ grows in second weekend – Scripps News

    From Wall Street to the Gaming World: Penn Entertainment CFO Felicia Hendrix’s Inspiring Journey

    Discover the Amazing New Animal Ambassadors Arriving at Green Briar!

    The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Pope Leo Sounds Alarm: Artificial Intelligence Could Endanger Humanity

    RBI sets up panel to examine potential of quantum technology in financial sector – TradingView

    How Great Steppe Stayed Connected Before Modern Technology – The Astana Times

    How Human Connection Breaks Through Technology at Focus Art Fair

    Hudson County Schools of Technology Slashes Programs, Leading to 20 Job Losses

    Director Andrea Saia gains stock and RSUs at Align Technology (NASDAQ: ALGN) – Stock Titan

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

‘Mirai-like’ botnet observed attacking EOL Zyxel NAS devices

June 24, 2024
in Technology
‘Mirai-like’ botnet observed attacking EOL Zyxel NAS devices
Share on FacebookShare on Twitter

There are early indications of active attacks targeting end-of-life Zyxel NAS boxes just a few weeks after details of three critical vulnerabilities were made public.

The Shadowserver Foundation, an internet security organization partnered with many of the world’s top security agencies and vendors, said its scanners started beeping on Friday as it continues to monitor CVE-2024-29973.

It observed multiple remote command execution attempts “by a Mirai-like botnet” and advised owners of affected Zyxel NAS devices to actively search for signs of compromise, especially if the patches weren’t applied immediately.

It also might be a good idea to just rip and replace the kit if it is still running, given that it’s fairly uncommon for vendors to release security updates for devices that have already reached their end of support.

Shadowserver told us the Mirai-based botnet shares characteristics with its famous Linux botherder ancestor, without sporting “exactly the same code base as the original.” We know that Mirai spun up once again last year with researchers at the time saying it was bolstered with an “aggressively updated arsenal of exploits,” which included those for D-Link and, yes, Zyxel devices.

CVE-2024-29973 is one of the three critical bugs patched in early June, all of which received a near-maximum 9.8 severity rating. It’s a command injection flaw affecting Zyxel NAS326 and NAS542 devices that could be exploited by unauthenticated attackers.

Shadowserver mentioned nothing of the other two – CVE-2024-29972 and CVE-2024-29974 – in its Friday update. The first is another command injection bug and the second a remote code execution flaw.

The vulnerabilities were discovered by an intern at Outpost24 and reported to Taiwan-based Zyxel in March. Both Timothy Hjort, the researcher, and Zyxel disclosed the bugs on June 4, with Hjort also providing proof of concept (PoC) exploit code in his write-up, meaning it was probably inevitable that these types of attacks would start cropping up.

D-Link issues rip and replace order for besieged NAS drives

That home router botnet the Feds took down? Moscow’s probably going to try again

Feds dismantle Russian GRU botnet built on 1,000-plus home, small biz routers

Vast botnet hijacks smart TVs for prime-time cybercrime

NAS devices are prime targets for cyberattacks, usually involving ransomware. QNAP’s boxes have been hit especially hard, with the Qlocker and DeadBolt variants in 2021 and 2022 garnering plenty of attention.

It’s not just ransomware that threatens NAS devices generally, though. As Trend Micro’s Stephen Hilt and Fernando Mercês said back in 2022, cryptominers and botnet operators saw opportunity in the Internet of Things long ago.

“Botnet infections and attacks have run rampant in IoT devices since 2016, mainly due to botnets’ capability to spread infections to as many hosts as possible, all in the name of helping cybercriminals achieve their many aims, such as launching distributed denial-of-service (DDoS) attacks,” they wrote. 

“NAS devices are ideal targets due to the minimal security defenses and protection installed in them, which are not enough once attackers have compromised one. Moreover, even older malware types and infections can remain undetected in these IoT devices for years due to lack of patching, further increasing the risks for NAS users due to the number of potential illicit use in addition to DDoS, such as information theft and proxy networks.”

Owners of affected Zyxel NAS326 devices should install the V5.21(AAZF.17)C0 patch ASAP if they haven’t already, and the V5.21(ABAG.14)C0 applies to the Zyxel NAS542. Or just upgrade the kit where possible for the most up-to-date security. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2024/06/24/mirailike_botnet_zyxel_nas/

Tags: botnetMirai-like'technology
Previous Post

Switchy: Smart link engagement platform

Next Post

Linux geeks cheer as Arm wrestles x86

How AI is Revolutionizing Conservation of Korea’s Ecological Backbone

May 26, 2026

Groundbreaking Discovery: Microbes That Cleanse CO2 Found Deep Underground

May 26, 2026

Darwin’s Atheism: Historical Support and a Question of Terminology – Science and Culture Today

May 26, 2026

Bose Lifestyle Ultra Speaker review: my new multi-room musical starting point – stuff.tv

May 26, 2026

Experience the Excitement: USMNT World Cup Roster Reveal and Fan Celebration Live in New York City!

May 26, 2026

How Team Illinois Sparked the Quantum Economy Revolution

May 26, 2026

The Hidden Dangers of Late-Night Phone Use on Teens’ Mental Health

May 26, 2026

Revitalizing Downtown Los Angeles: New Entertainment Zones Aim to Ignite Economic Growth

May 26, 2026

Trump Calls to Expand Iran Deal by Bringing More Nations into Abraham Accords

May 26, 2026

Pope Leo Sounds Alarm: Artificial Intelligence Could Endanger Humanity

May 26, 2026

Categories

Archives

May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,233)
  • Economy (1,256)
  • Entertainment (22,133)
  • General (21,731)
  • Health (10,289)
  • Lifestyle (1,266)
  • News (22,149)
  • People (1,257)
  • Politics (1,275)
  • Science (16,470)
  • Sports (21,752)
  • Technology (16,240)
  • World (1,247)

Recent News

How AI is Revolutionizing Conservation of Korea’s Ecological Backbone

May 26, 2026

Groundbreaking Discovery: Microbes That Cleanse CO2 Found Deep Underground

May 26, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version