Security News > 2024 > January > Bigpanzi botnet infects 170,000 Android TV boxes with malware

Bigpanzi botnet infects 170,000 Android TV boxes with malware
2024-01-17 18:54

A previously unknown cybercrime syndicate named 'Bigpanzi' has been making significant money by infecting Android TV and eCos set-top boxes worldwide since at least 2015.

Bigpanzi infects the devices via firmware updates or backdoored apps the users are tricked into installing themselves, as highlighted in a September 2023 report by Dr. Web.

Xlabs' report focuses on 'pandoraspear' and 'pcdn,' two malware tools used by Bigpanzi in their operations.

The analysts report that the Bigpanzi botnet has 170,000 daily bots at peak times and has observed over 1.3 million distinct IPs since August.

FBI: Androxgh0st malware botnet steals AWS, Microsoft credentials.

QNAP VioStor NVR vulnerability actively exploited by malware botnet.


News URL

https://www.bleepingcomputer.com/news/security/bigpanzi-botnet-infects-170-000-android-tv-boxes-with-malware/