Skip to Content

A New Big, Bad Botnet of Things Is on the Prowl

December 5, 2017

A network of 100,000 Internet-connected devices has been corralled and is ready to attack the Web. That’s according to Dale Drew, a security researcher at broadband provider CenturyLink, who tells Ars Technica that the newly discovered botnet is “pretty sophisticated.”

Botnets are collections of connected devices that have been hacked to work with one another to send debilitating surges of data to servers. They’re becoming an increasingly large problem as smart hardware fills our homes, because IoT devices are often insecure and rarely updated, making them easy for hackers to control.

In fact, most botnets—including the infamous Mirai botnet, which inspired us to name botnets of things to our 10 Breakthrough Technologies of 2017—simply uses a database of factory-issued administrator credentials to commandeer devices that have never had their passwords changed.

The new botnet, however, actually makes use of a zero-day hack to add insecure Huawei routers to its legions. Of the 100,000 devices so far corralled by hackers, Drew tells Ars Technica, 90,000 are such routers. The other devices are ensnared using a database of 65,000 username and password combinations.

It’s not the first time a botnet has used security exploits to amass an army. In October, another team of security researchers announced that the Reaper botnet used a similar trick that threatened to affect millions of devices.

Drew tells Ars Technica that the new botnet is big enough to perform a seriously damaging attack, like the one that took down a large swath of the American Internet just over a year ago, and it’s still growing. But for now, we’ll have to wait and see when and where the new one strikes.

Deep Dive


Our best illustrations of 2022

Our artists’ thought-provoking, playful creations bring our stories to life, often saying more with an image than words ever could.

How CRISPR is making farmed animals bigger, stronger, and healthier

These gene-edited fish, pigs, and other animals could soon be on the menu.

The Download: the Saudi sci-fi megacity, and sleeping babies’ brains

This is today’s edition of The Download, our weekday newsletter that provides a daily dose of what’s going on in the world of technology. These exclusive satellite images show Saudi Arabia’s sci-fi megacity is well underway In early 2021, Crown Prince Mohammed bin Salman of Saudi Arabia announced The Line: a “civilizational revolution” that would house up…

10 Breakthrough Technologies 2023

Every year, we pick the 10 technologies that matter the most right now. We look for advances that will have a big impact on our lives and break down why they matter.

Stay connected

Illustration by Rose Wong

Get the latest updates from
MIT Technology Review

Discover special offers, top stories, upcoming events, and more.

Thank you for submitting your email!

Explore more newsletters

It looks like something went wrong.

We’re having trouble saving your preferences. Try refreshing this page and updating them one more time. If you continue to get this message, reach out to us at with a list of newsletters you’d like to receive.