securityonline.info 8/4/2026, 8:21:28 AM · external

Dysphoria Botnet Hijacks 200k IoT Devices via Blockchain C2

Dysphoria Botnet Hijacks 200k IoT Devices via Blockchain C2
Developing story breach 2 articles tracked
Dysphoria botnet hijacks 200,000 IoT devices using blockchain C2
CyberSIXT Evidence Panel

THE Dysphoria botnet has compromised over 200,000 IoT and embedded Linux devices globally, primarily targeting routers, gateways, and IP cameras. It employs weak-credential brute force and exploits known vulnerabilities to spread. The botnet's command and control (C2) mechanism utilizes blockchain to obscure its infrastructure, making it difficult to track.

XLab researchers reported that the botnet showcases a mature commercial DDoS-for-hire service with operators selling tiered plans claiming up to 4 Tbps attack capacity. Defense recommendations include changing default credentials, patching firmware, and monitoring for unusual traffic to blockchain name services.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline