Corero executives offer perspective on recent reports of the Avzhan botnet resurfacing, targeting Chinese websites. Malwarebytes Labs researchers noted that while the bizarre patterns of this particular drive-by download were not especially advanced, they did involve the use of several different exploits to distribute malware. IT security experts commented below.
“Recent reports of a possible resurgence of the old Avzhan botnet, from 2010, just go to show how many old, unpatched, systems you can still find if you go digging on the Internet! It’s just another example showing that however much cyber criminals are innovating, they are still able to leverage techniques which have been tried and tested for many years. Botnets used for DDoS attacks – now comprised mainly of poorly secured IoT devices – have risen in popularity over the past couple of years. And, with the new promise of collecting significant ransom payments on the back of them, it’s no surprise that hackers might also be dusting off some of their old weapons.”
“This is yet another strong reminder of the importance of patching. It’s well worth remembering that only last year, WannaCry exploited a vulnerability in unpatched Windows XP systems (years after XP had been superseded).”
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional
Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes.The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.