📰 Mirai Variant 'xlabs_v1' Builds DDoS Botnet by Hijacking IoT Devices with Exposed ADB Ports

🚨 New Mirai-based botnet 'xlabs_v1' hijacks IoT devices & Android TVs via exposed ADB ports (TCP/5555). The botnet is used for DDoS-for-hire services, targeting Minecraft servers. #Mirai #Botnet #DDoS #IoTSecurity

🔗 https://cyber.netsecops.io

A Mirai-based botnet (xlabs_v1) is now exploiting Android Debug Bridge to hijack IoT devices for DDoS campaigns. ADB — a developer tool meant for testing — quietly left open on production devices. The gap between "useful during dev" and "hardened before shipping" remains one of IoT's most persistent puzzles. 🤖 #infosec #IoT #botnet
https://thehackernews.com/2026/05/mirai-based-xlabsv1-botnet-exploits-adb.html
Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks

xlabs_v1 botnet exploits ADB port 5555 to recruit IoT devices, enabling 21 DDoS methods and bandwidth-tiered attacks on gaming servers

The Hacker News

📢⚠️ A massive “low and slow” DDoS attack delivered 2.45 billion malicious requests in just 5 hours, using over 1.2 million IPs to evade normal anti-DDoS protections.

Read: https://hackread.com/low-and-slow-ddos-attack-hits-2-45-billion-5-hours/

#DDoS #CyberSecurity #DataDome #Botnet #CyberAttack

Massive “Low and Slow” DDoS Attack Hits Platform With 2.45 Billion in 5 Hours

DataDome researchers uncovered a massive low and slow DDoS attack that delivered 2.45 billion requests using 1.2 million IP addresses.

Hackread - Cybersecurity News, Data Breaches, AI and More

xlabs_v1 DDoS-for-Hire Operation Exposed: How an Operator's Debug Build Unraveled a Commercial Game-Server Botnet

Pulse ID: 69f9fc6ef8b7d696ea6b9605
Pulse Link: https://otx.alienvault.com/pulse/69f9fc6ef8b7d696ea6b9605
Pulse Author: CyberHunter_NL
Created: 2026-05-05 14:19:26

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #DDoS #DoS #InfoSec #OTX #OpenThreatExchange #RAT #bot #botnet #CyberHunter_NL

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

No consent dialog. No opt-out UI. Re-installs itself if the user removes it manually

Chrome is now LLM malware

Chrome on all OS, silently installs an LLM on your local machine, (like) true authentic malware. It's 2 to 4 GB 4096MB in size, taking up space I'm certain you have reserved for something else.

No consent dialog. No opt-out UI. Re-installs itself if the user removes it manually.

Google transformed Chrome into malware

With billions 109 installations, the climate burden is Massive!

https://www.thatprivacyguy.com/blog/chrome-silent-nano-install/

#Distributed #malware #Alphabet #Google #Chrome #silent #re #install #botnet #LLM #AI #Slop #Enshittification #programming #virus #fucked

A botnet is hijacking Android devices with ADB exposed to the internet… to flood Minecraft servers. The attack chain is genuinely clever: open debug port → silent compromise → DDoS-for-hire infrastructure. A reminder that exposed ADB is a real threat vector — even when the final target is a game. 🎮 #infosec #Android #botnet
https://gbhackers.com/adb-exposed-android-devices/

«Was ist ein Botnet?
Ein Botnet ermöglicht Cyberkriminellen unter anderem, Malware in großem Stil zu verbreiten und DDoS-Attacken zu initiieren.»

Willkommen im Botnet, eines der aktuellen Crime-as-a-Service das anscheinend Niemand nutzt.

🤖 https://www.csoonline.com/article/3493123/was-ist-ein-botnet.html

#botnet #ddos #saas #cybercrime #bot #itsicherheit #online #itsecurity

Was ist ein Botnet?

Ein Botnet ermöglicht Cyberkriminellen unter anderem, Malware in großem Stil zu verbreiten und DDoS-Attacken zu initiieren.

CSO Online

DDoS-for-Hire Operation Exposed: How an Operator's Debug Build Unraveled a Commercial Game-Server Botnet

Pulse ID: 69f8256aebb35e772fd1e967
Pulse Link: https://otx.alienvault.com/pulse/69f8256aebb35e772fd1e967
Pulse Author: Tr1sa111
Created: 2026-05-04 04:49:46

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #DDoS #DoS #InfoSec #OTX #OpenThreatExchange #RAT #bot #botnet #Tr1sa111

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

DDoS Malware Exploiting Jenkins Servers to Attack Valve Source Gaming Infrastructure

A newly discovered DDoS botnet campaign abuses exposed Jenkins servers with weak authentication to deliver Windows and Linux payloads. The malware turns compromised hosts into bots and targets Valve Source Engine game servers using UDP floods, TCP push attacks, HTTP floods and query-based amplification attacks.

Pulse ID: 69f735ac2403f4a4cb9ca4c3
Pulse Link: https://otx.alienvault.com/pulse/69f735ac2403f4a4cb9ca4c3
Pulse Author: cryptocti
Created: 2026-05-03 11:46:52

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #DDoS #DoS #HTTP #InfoSec #Linux #Malware #OTX #OpenThreatExchange #RCE #TCP #UDP #Windows #bot #botnet #cryptocti

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

Anti-DDoS Firm Heaped Attacks on Brazilian ISPs

A Brazilian tech firm that specializes in protecting networks from distributed denial-of-service (DDoS) attacks has been enabling a #botnet responsible for an extended campaign of massive #DDoS attacks against other network operators in #Brazil …The firm’s chief executive says the malicious activity resulted from a #security #breach and was likely the work of a competitor trying to tarnish his company’s public image.

https://krebsonsecurity.com/2026/04/anti-ddos-firm-heaped-attacks-on-brazilian-isps/

Anti-DDoS Firm Heaped Attacks on Brazilian ISPs – Krebs on Security