Skip to content
April 23, 2026
  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
Surekhabar

Surekhabar

News, Analysis & Updates

Trending News

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk 1
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

April 19, 2026
Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks 2
  • Cybersecurity

Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

April 19, 2026
Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India Samsung AI Innovation 3
  • Tech

Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India

April 19, 2026
Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users 4
  • Tech

Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users

April 15, 2026
Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire 5
  • Tech

Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire

April 15, 2026
Primary Menu
  • Home
  • Tech
  • Jobs
  • Cybersecurity

Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

admin April 19, 2026
Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

A new variant of the notorious Mirai botnet, dubbed Nexcorium, is actively exploiting vulnerabilities in internet-connected devices, allowing attackers to hijack systems and launch large-scale distributed denial-of-service (DDoS) attacks.

Security researchers report that the campaign primarily targets TBK digital video recorder (DVR) devices by exploiting CVE-2024-3721, a command injection vulnerability affecting specific DVR models. By abusing this flaw, attackers can execute malicious commands remotely and deploy malware onto vulnerable devices.

Once compromised, the devices are turned into bots within a growing botnet infrastructure. The attackers use a downloader script to fetch and execute malware payloads tailored for multiple system architectures, including ARM, MIPS, and x86, enabling widespread infection across diverse IoT environments.

The Nexcorium malware shares core characteristics with traditional Mirai variants, including modular components such as scanners, watchdog processes, and attack engines. These features allow it to maintain persistence on infected systems, evade detection, and receive commands from a central command-and-control (C2) server to execute coordinated DDoS attacks.

Researchers also observed that the malware incorporates additional exploits, including older vulnerabilities targeting devices like Huawei routers, as well as a built-in list of default credentials to brute-force access via Telnet. This multi-pronged approach significantly increases the botnet’s ability to spread rapidly across poorly secured networks.

Notably, attackers are also targeting end-of-life TP-Link routers with known vulnerabilities, further expanding the attack surface. Many of these devices remain unpatched or unsupported, making them easy targets for compromise.

The campaign underscores a persistent trend in cybersecurity: IoT devices continue to be highly vulnerable due to weak security configurations, outdated firmware, and lack of regular patching. Once infected, these devices can be weaponized at scale to disrupt online services, overwhelm networks, and support broader cyberattack operations.

Experts warn that as attackers increasingly automate exploitation and leverage known vulnerabilities, organizations and individuals must prioritize securing IoT devices by updating firmware, disabling default credentials, and restricting unnecessary network exposure to mitigate the risk of botnet-driven attacks.

About The Author

admin

See author's posts

Post navigation

Previous: Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India
Next: Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

Related Stories

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

admin April 19, 2026
TA446 Uses Leaked DarkSword iOS Exploit in Targeted Attacks
  • Cybersecurity

TA446 Uses Leaked DarkSword iOS Exploit in Targeted Attacks

Guru Gyan March 29, 2026
cd65e914-f1b1-4824-acee-06b3eeaaf646
  • Cybersecurity

Critical Langflow Code Injection Flaw Actively Exploited

Guru Gyan March 26, 2026

Trending News

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk 1
  • Cybersecurity

Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk

April 19, 2026
Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks 2
  • Cybersecurity

Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks

April 19, 2026
Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India Samsung AI Innovation 3
  • Tech

Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India

April 19, 2026
Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users 4
  • Tech

Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users

April 15, 2026
Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire 5
  • Tech

Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire

April 15, 2026

Connect with Us

  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest

About US

Surekhabar is a trusted digital news platform committed to delivering accurate, timely, and verified news. Our mission is to keep readers informed with facts that matter, presented clearly and responsibly.

Recent Posts

  • Critical TP-Link Router Vulnerability CVE-2024-21833 Puts Networks at Risk
  • Mirai Variant Nexcorium Exploits IoT Devices to Launch Large-Scale DDoS Attacks
  • Samsung Launches AI-Powered Retail Tech with Glasses-Free 3D Screens in India
  • Microsoft Rolls Out KB5083769 Cumulative Update for Windows 11 Users
  • Iran-Linked Hackers Expected to Continue Cyberattacks Despite Ceasefire

Categories

Cybersecurity Education Jobs Tech

Connect with Us

  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
  • Facebook
  • Twitter
  • Youtube
  • Linkedin
  • Instagram
  • Pinterest
Copyright © All rights reserved. | MoreNews by AF themes.