None
EN
ShadowV2 Botnet Exploits Misconfigured AWS Docker Containers for DDoS-for-Hire Service
['The Hacker News', 'Sep', 'Ravie Lakshmanan']
The Hacker News
Cybersecurity researchers have disclosed details of a new botnet that customers can rent access to conduct distributed denial-of-service (DDoS) attacks against targets of interest.
The ShadowV2 botnet, according to Darktrace, predominantly targets misconfigured Docker containers on Amazon Web Services (AWS) cloud servers to deploy a Go-based malware that turns infected systems into attack nodes and co-opt them into a larger DDoS botnet.
The DDoS attack, the largest ever recorded to date, lasted only 40 seconds.
Chinese security firm QiAnXin XLab, in a technical report last week, said the botnet known as AISURU is responsible for the attack.
The new samples support not only DDoS attacks but also Proxy functionality.
['image'
'docker'
'ddos'
'botnet'
'ddosforhire'
'attack'
'misconfigured'
'shadowv2'
'exploits'
'known'
'aws'
'service'
'security'
'server'
'gobased'
'containers'
'attacks']