Researchers have discovered a new Mirai botnet variant called Murdoc Botnet which targets vulnerabilities in AVTECH IP cameras and Huawei HG532 routers.
The botnet has been active since at least July 2024, with over 1300 IPs found active in the campaign, mainly in Malaysia, Thailand, Mexico, and Indonesia.
The botnet uses existing exploits to download next-stage payloads and specifically targets IoT devices through command-line injection and shell scripts.
Other recent Mirai-based botnets, such as Gayfemboy, have also been observed exploiting vulnerabilities in various devices.