Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption

Summary

The Dysphoria IoT botnet has incorporated blockchain technology for its command and control (C2) infrastructure and is utilizing infected devices as relays. This evolution follows a disruption of the JackSkid infrastructure by law enforcement, indicating a move towards increased resilience and evasion tactics by the botnet.

IFF Assessment

FOE

The adoption of advanced techniques like blockchain C2 and victim relays by the Dysphoria botnet makes it more difficult to disrupt, posing a greater threat to defenders.

Defender Context

This development highlights the evolving tactics of IoT botnets, which are adapting to overcome disruption efforts by incorporating sophisticated infrastructure like blockchain. Defenders need to monitor for the emergence of these resilient botnets and develop strategies to counter their decentralized and evasive command and control mechanisms.

Read Full Story →