Home devices could be used in attacks if connected to the Internet

Home devices could be used in attacks if connected to the Internet

October 25, 2016   09:18 am

Hackers used internet-connected home devices, such as CCTV cameras and printers, to attack popular websites on Friday, security analysts say.

Twitter, Spotify, and Reddit were among the sites taken offline on Friday.
Each uses a company called Dyn, which was the target of the attack, to direct users to its website.

Security analysts now believe the attack used the “internet of things” - web-connected home devices - to launch the assault.

Dyn is a DNS service - an internet “phone book” which directs users to the internet address where the website is stored. Such services are a crucial part of web infrastructure. On Friday, it came under attack - a distributed denial of service (DDoS) - which relies on thousands of machines sending co-ordinate messages to overwhelm the service.

The “global event” involved “tens of millions” of internet addresses. Security firm Flashpoint said it had confirmed that the attack used “botnets” infected with the “Mirai” malware.

Many of the devices involved come from Chinese manufacturers, with easy-to-guess usernames and passwords that cannot be changed by the user - a vulnerability which the malware exploits. “Mirai scours the Web for IoT (Internet of Things) devices protected by little more than factory-default usernames and passwords,” explained cyber security expert Brian Krebs, “and then enlists the devices in attacks that hurl junk traffic at an online target until it can no longer accommodate legitimate visitors or users.”

The owner of the device would generally have no way of knowing that it had been compromised to use in an attack, he wrote.
Mr. Krebs is intimately familiar with this type of incident, after his website was targeted by a similar assault in September, in one of the biggest web attacks ever seen.

Disclaimer: All the comments will be moderated by the AD editorial. Abstain from posting comments that are obscene, defamatory or slanderous. Please avoid outside hyperlinks inside the comment and avoid typing all capitalized comments. Help us delete comments that do not follow these guidelines by flagging them(mouse over a comment and click the flag icon on the right side). Do use these forums to voice your opinions and create healthy discourse.

Most Viewed Video Stories

LIVE🔴Ada Derana Lunch Time News Bulletin 12.00 pm

LIVE🔴Ada Derana Lunch Time News Bulletin 12.00 pm

Palitha Thewarapperuma: Country bids farewell to beloved politician & 'man of the people'

Election body says it cannot intervene to resolve SLFP’s infighting (English)

President pledged to nurture budding entrepreneurs through regional youth centres (English)

Ambitious program Sri Lanka embarked upon is now delivering results: IMF (English)

Former MP Palitha Thewarapperuma's final rites to be performed today (English)

LIVE🔴Ada Derana Prime Time News Bulletin 6.55 pm

LIVE🔴Ada Derana Lunch Time News Bulletin 12.00 pm