Bleepingcomputer
ShadowV2 Botnet Exploits AWS Outage to Target IoT Devices Globally
First seen 26 Nov 2025, 23:33 UTC
•

•47.4
Export
Article Content
Browse articles
During the major AWS outage in October 2025, a Mirai-based botnet named ShadowV2 was identified infecting IoT devices across 28 countries. The botnet exploited known vulnerabilities in devices from manufacturers like D-Link and TP-Link, forming a network of compromised devices for potential future attacks, including DDoS. Researchers from Fortinet's FortiGuard Labs noted that the botnet's activity coincided with the outage, suggesting it was a test run.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
CISA Alerts on Critical Flaws in SimpleHelp, Samsung MagicINFO, and D-Link Devices
Google and FBI Disrupt NetNut Proxy Network Linked to 2 Million Devices
OceanLotus Shifts Focus to Domestic Espionage with SPECTRALVIPER Attacks
EU Sanctions Iranian Cyber Group for Election Interference and Data Breaches
cPanel and WHM Critical Auth Bypass Vulnerability Patched
Pro-Iran Hacktivist Group Launches DDoS Attack on Canonical's Ubuntu Infrastructure