securityonline.info
Dysphoria Botnet Uses Blockchain Domains for C2 and Turns Victims Into Relays
At a glance Malware family Dysphoria (jackskid/fbot-derived IoT botnet) Threat actor Unattributed; run as a commercial DDoS-for-hire service Target About 200,000 IoT and embedded Linux devices worldwide, mostly routers, gateways, and IP cameras Delivery vector Telnet/SSH weak-credential brute force plus known IoT RCE exploits Key capabilities Multi-vector DDoS, blockchain ENS/SNS C2, victim-to-relay conversion, UPnP NAT traversal Source