DemonBot Fans DDoS Flames with Hadoop Enslavement
#1
Quote:A Linux-based DDoS botnet dubbed DemonBot has been found enslaving Hadoop frameworks, using a vulnerability in Hadoop’s resource management tool to infect cloud servers with the botnet malware.

Hadoop is a popular open-source framework, usually deployed in cloud environments, that organizations can use to create artificial intelligence or machine learning platforms for big-data analytics. It’s deployed on clusters of servers – virtual and physical – which are often connected to the internet. As such, it represents a ripe, and somewhat underutilized, attack surface.

Enter DemonBot, which is actively enslaving Hadoop clusters to carry out DDoS attacks based on UDP and TCP floods; the security team at Radware said that it has recorded more than 5 million server requests across the globe as of this week.

Pascal Geenens, cybersecurity evangelist at Radware, told Threatpost that the malware isn’t particularly sophisticated (the author copied and rewrote existing code to fit his or her needs), but it’s extremely effective.

Source: https://threatpost.com/demonbot-fans-ddo...nt/138597/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
[Test & Review Request] Looking for fee...
Can you at least int...jasonX — 00:35
[Test & Review Request] Looking for fee...
Can you at least int...jasonX — 00:31
Hasleo software (formerly called EasyUE...
Hasleo WinToHDD vers...jasonX — 00:15
[Test & Review Request] Looking for feed...
Hi Geeks, :D Followi...LFTyyy — 13:57
Manjaro Linux 26.0.4 Build 260327
Manjaro Linux 26.0...harlan4096 — 09:46

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
No upcoming birthdays.

[-]
Online Staff
There are no staff members currently online.

>