Skip to main content
  1. Home
  2. Smart Home
  3. Web
  4. News

Internet of Things malware Hajime is creating a botnet from 300,000 devices

Add as a preferred source on Google

For many people, there is a growing concern over smart devices becoming connected. While smart devices make day-to-day life more convenient, there is an underlying risk of malware attacking and making use of these devices. One such example is Hajime, an Internet of Things (IoT) malware that is creating a peer-to-peer botnet. Already it has compromised almost 300,000 devices.

Kaspersky Lab recently published its research into Hajime and its unknown end goal. So far, this malware has focused its attention on DVRs, webcams, and routers, but it is capable of attacking any device on the internet. Using a brute-force attack on device passwords, Hajime infects the device, and then conceals itself from the victim. Compromised devices can then be used by Hajime’s creator without the victim’s knowledge.

Recommended Videos

While a majority of these compromised devices are located in Iran, Vietnam, and Brazil, Kaspersky Lab suggests that IoT owners change their passwords to something more difficult to guess through brute force. Additionally, owners should update their firmware if needed.

First signs of Hajime appeared in October 2016 and it has since developed new ways of spreading. Instead of containing attack code, this malware only contains a propagation module. As it takes over a device, it adds it to an existing peer-to-peer botnet. This network of compromised devices is then used for spam or DDoS attacks.

There are a few networks that Hajime has avoided. These include General Electric, Hewlett-Packard, the U.S. Postal Service, the United States Department of Defense, and a few private networks.

“The most intriguing thing about Hajime is its purpose,” said Konstantin Zykov, senior security researcher at Kaspersky Lab. “While the botnet is getting bigger and bigger, its objective remains unknown. We have not seen its traces in any type of attack or additional malicious activity.”

Full details about this research are available on the firm’s SecureList blog.

Garrett Hulfish
Garrett is the kind of guy who tells you about all the tech you haven't heard of yet. He also knows too much about other…
Beatbot AquaSense X review: The pool cleaner for those that want to be pampered
It's a nothing short of a self-cleaning nirvana for your pool. But as they say, nothing fine comes without a fittingly handsome fee.
Beatbot Aquasense X robot, AstroRinse station and iSkim

view at amazon

Quick take: 

Read more
An unpatched Shark vacuum flaw could put your smart home at risk
The vulnerability affects SharkNinja robot vacuums and stems from a misconfigured cloud security policy rather than a firmware bug.
Shark RV2320S Matrix Self-Emptying Robot Vacuum Featured

Robot vacuums are supposed to clean the house. Turns out this one was mapping it for strangers. Security researchers have disclosed a critical vulnerability affecting SharkNinja's cloud-connected robot vacuums that could allow attackers to remotely access sensitive information, including live camera feeds, home maps, Wi-Fi passwords, and even execute commands on affected devices. More concerningly, the issue reportedly remains unpatched despite being responsibly disclosed to SharkNinja months ago.

How can a vacuum become a spy?

Read more
Google Home Speaker (2026) review: Smarter and punchier, with a subscription pinch
Google's latest smart speaker pairs Gemini with better sound and deeper smart home integration. What's not to love without spending over a $100?
Sphere, Body Part, Finger

View at Amazon

Quick Recap

Read more