Skip to main content

Internet of Things malware Hajime is creating a botnet from 300,000 devices

hajime iot botnet internet of things 1200x0
Image used with permission by copyright holder
For many people, there is a growing concern over smart devices becoming connected. While smart devices make day-to-day life more convenient, there is an underlying risk of malware attacking and making use of these devices. One such example is Hajime, an Internet of Things (IoT) malware that is creating a peer-to-peer botnet. Already it has compromised almost 300,000 devices.

Kaspersky Lab recently published its research into Hajime and its unknown end goal. So far, this malware has focused its attention on DVRs, webcams, and routers, but it is capable of attacking any device on the internet. Using a brute-force attack on device passwords, Hajime infects the device, and then conceals itself from the victim. Compromised devices can then be used by Hajime’s creator without the victim’s knowledge.

While a majority of these compromised devices are located in Iran, Vietnam, and Brazil, Kaspersky Lab suggests that IoT owners change their passwords to something more difficult to guess through brute force. Additionally, owners should update their firmware if needed.

First signs of Hajime appeared in October 2016 and it has since developed new ways of spreading. Instead of containing attack code, this malware only contains a propagation module. As it takes over a device, it adds it to an existing peer-to-peer botnet. This network of compromised devices is then used for spam or DDoS attacks.

There are a few networks that Hajime has avoided. These include General Electric, Hewlett-Packard, the U.S. Postal Service, the United States Department of Defense, and a few private networks.

“The most intriguing thing about Hajime is its purpose,” said Konstantin Zykov, senior security researcher at Kaspersky Lab. “While the botnet is getting bigger and bigger, its objective remains unknown. We have not seen its traces in any type of attack or additional malicious activity.”

Full details about this research are available on the firm’s SecureList blog.

Editors' Recommendations

Garrett Hulfish
Garrett is the kind of guy who tells you about all the tech you haven't heard of yet. He also knows too much about other…
The 5 best office chairs for long hours in 2024
The Verve in an office.

When you spend half (or more) of your day in an office chair, a $50 budget-buy store brand isn’t the kind of purchase you should be making. Not only are these cheap items more likely to break down over time, but there’s a good chance this kind of chair isn’t going to have the elevated support features your body needs. That’s why we’ve put together this list of the five best office chairs for long hours in 2024.

Each of these models are tailor-made for those of us who need a comfortable chair that feels good all day. We’ve also made sure to include a couple of options for folks who experience back pain, shoulder strain, and other sore conditions.

Read more
Matter gains support for kitchen appliances, adds new energy-tracking features
The Matter logo on a colorful background.

Matter received its big 1.2 update in late 2023, and now the Connectivity Standards Alliance (CSA) is ready to officially roll out Matter 1.3. The latest version of the interoperability standard is now available for use, offering added support for appliances like microwave ovens and lclothes dryers, while also introducing new features for water and energy management.

The full list of new device types supported by Matter 1.3 include microwave ovens, ovens, cooktops, extractor hoods (such as vent hoods), and laundry dryers. These aren't quite as exciting or mainstream as the nine device types introduced with Matter 1.2, but it's great to see the CSA continuing to broaden the reach of the Matter network.

Read more
Best Ring deals: Save on Ring doorbell and Ring alarm bundles
Ring Video Doorbell 3

Ring is probably one of the most well-known brands and one of the best video doorbell brands on the market, so it would make sense if you want to get yourself a Ring camera, especially if you're in the Amazon ecosystem. Luckily, there are a lot of options out there, whether you want a doorbell or a floodlight, and while not all of them have deals, you can always find something refurbished or in a bundle that should save you a bit of cash. That's why we've gone out and collected the best deals we could find for various Ring product and collected them below.
Ring Stick Up Cam Battery (refurbished) -- $58, was $90

The Ring Stick Up is a good security camera for indoors or outdoors. It can go almost anywhere, and allows you to hear and speak to people on camera from your phone or tablet. You can customize the motion sensors to focus on specific areas of your home, and it has a Live View that allows you to watch over your home in 1080p Full HD resolution at any time. It even works with Alexa, allowing you to hear audio announcements when motion is detected. The Ring Stick Up sets up in minutes and it charges easily with a removable battery pack. This is a great option if you’re looking for something capable but versatile.

Read more