ThreatCluster

Dysphoria Botnet Compromises 296,000 IoT Devices for DDoS Attacks

First seen 15 Aug 2026, 10:35 UTC GbhackersCybersecuritynews 87% similarity 67

Article Content

Browse articles
ThreatCluster

The Dysphoria botnet has compromised approximately 296,000 Internet of Things devices, including routers, gateways, and IP cameras. This botnet is exploiting poorly secured embedded Linux systems, converting them into a platform for Distributed Denial of Service (DDoS) attacks and residential proxy operations. The scale of the botnet poses a significant threat as these devices are often located in residential areas, making them less monitored. The Shadowserver Special Report has identified the extent of the compromise, emphasizing the urgent need for improved security measures on IoT devices. The botnet's operators are leveraging these compromised devices to target various online entities. As of now, the botnet remains active and poses ongoing risks to internet infrastructure.

Key Points: • Dysphoria botnet has compromised around 296,000 IoT devices. • Affected devices include routers, gateways, and IP cameras with poor security. • The botnet is used for DDoS attacks and residential proxy operations.

ThreatCluster AI How this analysis works

Timeline

2026-08-14
Shadowserver Report released
A report identified approximately 296,000 compromised IoT devices linked to the Dysphoria botnet.
Gbhackers
2026-08-14
Dysphoria botnet details published
Cybersecuritynews reported on the botnet's use of compromised routers and cameras for DDoS attacks.
Cybersecuritynews

Community

Browse all →

Tracked Entities in This Story