Image for Article: 14,000 routers are infected by malware that's highly resistant to takedowns

Article Details

Title
Article: 14,000 routers are infected by malware that's highly resistant to takedowns
Impact Score
6 / 10
AI Summary (Processed Content)

Security researchers have discovered a resilient botnet of approximately 14,000 routers, primarily Asus models, which are being used as an anonymous proxy network for cybercrime. The botnet, named KadNap, grows by exploiting known, unpatched vulnerabilities in the devices, not zero-days, and is heavily concentrated in the United States.

Its key feature is a sophisticated peer-to-peer design based on Kademlia, which uses distributed hash tables to conceal command-and-control servers. This decentralized structure makes the botnet particularly resistant to traditional detection and takedown methods.

The main topics covered are the discovery of the KadNap botnet, its scale and composition, the vulnerabilities it exploits, its geographic distribution, and its resilient peer-to-peer technical architecture.

Original URL
https://arstechnica.com/security/2026/03/14000-routers-are-infected-by-malware-thats-highly-resistant-to-takedowns/
Source Feed
Ars Technica
Published Date
2026-03-11 21:27
Fetched Date
2026-03-11 18:30
Processed Date
2026-03-11 18:31
Embedding Status
Present
Cluster ID
Not Clustered
Raw Extracted Content