Skip to content
September 9, 2026
  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
Surekhabar

Surekhabar

News. Insights. Everything That Matters

Trending News

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday 1
  • Cybersecurity
  • Vulnerabilities

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday

September 8, 2026
SSC CHSL Recruitment 2026: 2,536 Vacancies, Eligibility, Salary & Apply Online SSC CHSL Recruitment 2026 2
  • Government Jobs
  • Jobs
  • SSC Jobs

SSC CHSL Recruitment 2026: 2,536 Vacancies, Eligibility, Salary & Apply Online

September 8, 2026
Indian AI Startup Oppex AI Raises ₹4.2 Crore to Transform Industrial Operations Indian AI Startup Oppex AI Raises 3
  • Tech

Indian AI Startup Oppex AI Raises ₹4.2 Crore to Transform Industrial Operations

September 1, 2026
Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign Sep 1, 2026, 09_11_26 PM 4
  • Cybersecurity

Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign

September 1, 2026
Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk 5
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

April 19, 2026
Primary Menu
  • Home
  • Technology
  • Cybersecurity
    • CVE Records
  • Jobs
  • Cybersecurity

Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

admin April 19, 2026
Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

A new variant of the notorious Mirai botnet, dubbed Nexcorium, is actively exploiting vulnerabilities in internet-connected devices, allowing attackers to hijack systems and launch large-scale distributed denial-of-service (DDoS) attacks.

Security researchers report that the campaign primarily targets TBK digital video recorder (DVR) devices by exploiting CVE-2024-3721, a command injection vulnerability affecting specific DVR models. By abusing this flaw, attackers can execute malicious commands remotely and deploy malware onto vulnerable devices.

Once compromised, the devices are turned into bots within a growing botnet infrastructure. The attackers use a downloader script to fetch and execute malware payloads tailored for multiple system architectures, including ARM, MIPS, and x86, enabling widespread infection across diverse IoT environments.

The Nexcorium malware shares core characteristics with traditional Mirai variants, including modular components such as scanners, watchdog processes, and attack engines. These features allow it to maintain persistence on infected systems, evade detection, and receive commands from a central command-and-control (C2) server to execute coordinated DDoS attacks.

Researchers also observed that the malware incorporates additional exploits, including older vulnerabilities targeting devices like Huawei routers, as well as a built-in list of default credentials to brute-force access via Telnet. This multi-pronged approach significantly increases the botnet’s ability to spread rapidly across poorly secured networks.

Notably, attackers are also targeting end-of-life TP-Link routers with known vulnerabilities, further expanding the attack surface. Many of these devices remain unpatched or unsupported, making them easy targets for compromise.

The campaign underscores a persistent trend in cybersecurity: IoT devices continue to be highly vulnerable due to weak security configurations, outdated firmware, and lack of regular patching. Once infected, these devices can be weaponized at scale to disrupt online services, overwhelm networks, and support broader cyberattack operations.

Experts warn that as attackers increasingly automate exploitation and leverage known vulnerabilities, organizations and individuals must prioritize securing IoT devices by updating firmware, disabling default credentials, and restricting unnecessary network exposure to mitigate the risk of botnet-driven attacks.

About The Author

admin

See author's posts

Post navigation

Previous: Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India
Next: Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

Related Stories

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday
  • Cybersecurity
  • Vulnerabilities

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday

admin September 8, 2026
Sep 1, 2026, 09_11_26 PM
  • Cybersecurity

Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign

admin September 1, 2026
Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

admin April 19, 2026

Trending News

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday 1
  • Cybersecurity
  • Vulnerabilities

Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday

September 8, 2026
SSC CHSL Recruitment 2026: 2,536 Vacancies, Eligibility, Salary & Apply Online SSC CHSL Recruitment 2026 2
  • Government Jobs
  • Jobs
  • SSC Jobs

SSC CHSL Recruitment 2026: 2,536 Vacancies, Eligibility, Salary & Apply Online

September 8, 2026
Indian AI Startup Oppex AI Raises ₹4.2 Crore to Transform Industrial Operations Indian AI Startup Oppex AI Raises 3
  • Tech

Indian AI Startup Oppex AI Raises ₹4.2 Crore to Transform Industrial Operations

September 1, 2026
Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign Sep 1, 2026, 09_11_26 PM 4
  • Cybersecurity

Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign

September 1, 2026
Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk 5
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

April 19, 2026

Connect with Us

  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest

About US

Surekhabar is a trusted digital news platform committed to delivering accurate, timely, and verified news. Our mission is to keep readers informed with facts that matter, presented clearly and responsibly.

Recent Posts

  • Microsoft Fixes 966 Vulnerabilities in Record-Breaking September Patch Tuesday
  • SSC CHSL Recruitment 2026: 2,536 Vacancies, Eligibility, Salary & Apply Online
  • Indian AI Startup Oppex AI Raises ₹4.2 Crore to Transform Industrial Operations
  • Unpatched iPhones Targeted by 13 Malicious Packages in Crypto Theft Campaign
  • Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

Categories

Cybersecurity Education Government Jobs Jobs SSC Jobs Tech Vulnerabilities

Connect with Us

  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
Copyright © All rights reserved. | MoreNews by AF themes.