[su_heading size=”18″ margin=”40″]Researchers report one of the most resilient and dangerous DDoS botnets, consisting of an army of compromised IoT cameras.[/su_heading]

More than 25,000 CCTV IoT devices around the world have been compromised, forming part of the largest camera botnet ever discovered. The cameras are being used for denial-of-service attacks, targeting businesses around the world, according to research by security firm Sucuri.
The botnet, which was discovered during a DDoS attack carried out against a well-known jewelry store, has the ability to make more than 50,000 HTTP requests per second.
“It’s not new that attackers are using vulnerable IoT devices as a vehicle for their DDoS campaigns,” Sucuri says. “However, we have never before analyzed a campaign that leveraged only CCTV devices and was able to generate this volume of requests seamlessly, for such a long time,” it adds.
According to the company, the attacks, which are variations of HTTP flood and cache bypass attacks, are triggered through 25,513 unique IP addresses in 105 countries, with 5% of these IPs being IPv6.
The majority of the compromised CCTV devices are located in Taiwan, the US, Indonesia, Mexico, Malaysia, Israel, Italy, Vietnam, France and Spain, the researchers said.
