Evooo1Bot Linux Botnet Hijacks Edge Devices for Proxy Network
TL;DR. A new botnet named Evooo1Bot is exploiting known vulnerabilities in Linux-based edge devices, transforming them into a SOCKS5 proxy network for malicious activity. - The botnet targets publicly exposed devices with weak credentials or unpatched flaws, creating a large network of compromised endpoints. - Attackers use these hijacked devices to obscure their origin, facilitating further cybercrime and evading detection. - The widespread deployment of unsecure edge IoT devices creates a vulnerable attack surface for such automated threats.
- Evooo1Bot is a new Linux botnet leveraging known flaws.
- It converts infected edge devices into SOCKS5 proxy servers.
- The botnet exploits weak credentials and unpatched vulnerabilities.
- Compromised devices are used to anonymize malicious traffic.
- The threat highlights the security risks in unmanaged edge and IoT deployments.