TVT DVRs become prime target for Mirai botnet

zeeforce
3 Min Read




  • GreyNoise says scannings for vulnerable TVT DVRs are spiking
  • More than 2,500 unique IP addresses were hunting at one point
  • A 2024 vulnerability allows threat actors to run admin commands on the device

Operators of the Mirai botnet are actively hunting for vulnerable TVT DVRs to assimilate them into the nefarious network, cybersecurity researchers GreyNoise have revealed after observing a spike in exploitation attempts.

In May 2024, security researchers from SSD Secure Disclosure reported on a vulnerability affecting NVMS9000 DVRs built by the Shenzhen-based TVT Digital Technology manufacturer. The vulnerability was described as an authentication bypass, allowing threat actors to run admin commands on the device unabated.



Source link

Share This Article
Leave a comment
Optimized by Optimole
Verified by MonsterInsights