时间:2026-05-28 16:34:24 来源:网络整理编辑:休閑
It sounds like a sci-fi movie. Over 5,000 connected devices, including light bulbs and vending machi
It sounds like a sci-fi movie. Over 5,000 connected devices, including light bulbs and vending machines, were hacked to slow internet service at a university to a crawl.
Poorly secured internet of things (IoT) devices have become gold mines for hackers looking to launch DDoS attacks to take websites and services offline. But this latest case, detailed in Verizon's Data Breach Digest 2017, is the rare example of gadgets attacking their own network.
SEE ALSO:Your smart fridge is about to make our IoT security nightmare so much worseThe devices were making hundreds of Domain Name Service (DNS) lookups every 15 minutes, causing the university's network connectivity to become unbearably slow or even inaccessible.
Weirdly enough, the majority of the searches "showed an abnormal number of sub-domains related to seafood," the report said.
Here's an abstract from the Digest'ssneak peek:
The firewall analysis identified over 5,000 discrete systems making hundreds of DNS lookups every 15 minutes. Of these, nearly all systems were found to be living on the segment of the network dedicated to our IoT infrastructure.
With a massive campus to monitor and manage, everything from light bulbs to vending machines had been connected to the network for ease of management and improved efficiencies.
While these IoT systems were supposed to be isolated from the rest of the network, it was clear that they were all configured to use DNS servers in a different subnet.
It's very unlikely, to use an understatement, that thousands of students at the university had a sudden and simultaneous urge to eat seafood.
Instead, what did happen was that cheeky hackers instructed the IoT devices to make DNS lookups related to seafood every 15 minutes.
Here's what Verizon's RISK (Research, Investigations, Solutions and Knowledge) team told the university after they were summoned to investigate the attack:
The RISK Team had provided me with a report detailing known indicators found in the firewall and DNS logs that I had sent over earlier. Of the thousands of domains requested, only 15 distinct IP addresses were returned. Four of these IP addresses and close to 100 of the domains appeared in recent indicator lists for an emergent IoT botnet.
So here's the case of vending machines and lamp posts compulsively searching for seafood and overwhelming the network with requests with the aim of taking it down.
If this isn't creepy/dystopian/fascinating, we don't know what is.
Luckily for the guys at the university, there was no need to replace "every soda machine and lamp post".
The Verizon's RISK team explained that the botnet "spread from device to device by brute forcing default and weak passwords".
To solve the massive hack, the university intercepted a clear-text malware password for a compromised IoT device and then used "that information to perform a password change before the next malware update".
Easy, right?
Overall, it doesn't look like this problem is going away anytime soon. There are more than 6 billion IoT devices currently running, according to Gartner Research. That number could reach more than 20 billion by 2020.
TopicsCybersecurity
We asked linguists if Donald Trump speaks like that on purpose2026-05-28 16:33
FIFA&歐足聯官方 :禁止俄羅斯國家隊與俱樂部參加所有賽事2026-05-28 16:07
巴薩財務狀況緩解簽哈蘭德不是夢 下賽季一片光明2026-05-28 15:56
名宿:薩拉赫續約本該水到渠成 利物浦決不能放他2026-05-28 15:15
WhatsApp announces plans to share user data with Facebook2026-05-28 15:05
拜仁青訓總監紹爾:看好劉邵子洋潛力 極具運動天賦2026-05-28 15:05
熱議亞泰退出亞冠:無奈卻不失理性 放棄正常沒啥好指責的2026-05-28 14:48
亞洲杯官方為吉翔慶生:用攻守全能的表現贏得信任2026-05-28 14:07
Felix the cat just raised £5000 for charity because she's the hero we all need2026-05-28 14:06
免簽上癮 !巴薩接近敲定凱西 5年合同+年薪650萬歐2026-05-28 13:51
Tributes flow after death of former Singapore president S.R. Nathan2026-05-28 16:31
梅西附體 !格10神級停球+破門 足總杯終獲處子球2026-05-28 16:25
迎來曙光 !重慶隊股改有望加快推進 當代集團出局債務分割函2026-05-28 16:21
胡靖航 :去武漢因為離家近 等恢複主客場好好謝謝海港球迷2026-05-28 16:09
Donald Trump's tangled web of Russian influence2026-05-28 16:04
熱刺前瞻:戰績搖擺如過山車 米堡或再做豪門殺手2026-05-28 15:55
亞泰無奈放棄亞冠隻是開始? 中超4隊全部退出並非不可能2026-05-28 15:48
記者:中超隊仍在運作迭戈科斯塔 海港不會引進艾克森2026-05-28 14:23
The U.S. will no longer have the final say on internet domain names2026-05-28 14:21
廣州隊很多老隊員理解欠薪:有機會會想辦法回報俱樂部2026-05-28 13:51