A newly identified botnet variant known as C0XMO is making waves in the cybersecurity landscape by exploiting a flaw in DD-WRT router firmware. This botnet is an offshoot of the Gafgyt family and has the capability to infect a range of devices with different CPU architectures. Once it infiltrates a DD-WRT router, C0XMO can spread to other connected devices, effectively broadening its reach. Notably, this botnet has been designed to not only propagate itself but also to actively seek out and disable rival malware, enhancing its dominance in the infected network. The emergence of C0XMO highlights the ongoing challenges posed by IoT vulnerabilities and the need for robust security measures to protect against such threats. Users of affected routers are advised to update their firmware and implement security best practices to mitigate the risk of infection.
C0XMO Botnet Exploits DD-WRT Router Vulnerability
The C0XMO botnet, a new variant of Gafgyt, is exploiting vulnerabilities in DD-WRT router firmware to propagate and eliminate competing malware.
