TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Mirai is Attacking Again, So We’re Outing its Hilarious, Explicit C&C Hostnames

2018-01-04 · Read original ↗

ATT&CK techniques detected

2 predictions
T1584.005Botnet
80%
“mirai is attacking again, so we ’ re outing its hilarious, explicit c & c hostnames warning : explicit and potentially offensive content ahead. the mirai botnet is kind of like madonna. they both were huge once, and then the adoring public shifted their attention to younger, newe…”
T1583.001Domains
43%
“( c & c ) hostnames and had a bit of a laugh. of course, we take this botnet stuff seriously, but we couldn ’ t help snickering a little at some of the domain names. of the 203 c & c hostnames we sampled in the last quarter of 2017, about 70 are still active in dns. and of that o…”

Summary

With Mirai rearing its ugly head again, we’re revealing its C&C hostnames so organizations can update their denylists and protect themselves.