Gigantic 100,000-strong botnet used to hijack traffic meant for Brazilian banks
#1
Quote:Over 100,000 routers have had their DNS settings modified to redirect users to phishing pages. The redirection occurs only when users are trying to access e-banking pages for Brazilian banks.

According to Netlab experts, the hackers are scanning the Brazilian IP space for routers that use weak or no passwords, accessing the routers' settings, and replacing legitimate DNS settings with the IPs of DNS servers under their control.

This change redirects all DNS queries that pass through the compromised routers to the malicious DNS servers, which respond with incorrect info for a list of 52 sites.

https://blog.netlab.360.com/70-different...ostdns-en/

Source: https://www.zdnet.com/article/gigantic-1...ian-banks/
[-] The following 1 user says Thank You to silversurfer for this post:
  â€˘ harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Internet Download Manager 6.32 Build 9
Internet Download ...Kool — 16:10
Privazer 4.0.124 (27 June 2026)
v4.0.124 (27 June ...harlan4096 — 12:48
Chrome Adds Deep Google Wallet Integrati...
Google is expandin...harlan4096 — 11:33
Backup Suite V5.8.2.2
Hasleo Backup Suit...harlan4096 — 07:42
Google Chrome 149.0.7827.200/201
Google Chrome 149....harlan4096 — 08:26

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
No upcoming birthdays.

[-]
Online Staff
There are no staff members currently online.

>