By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: New Mirai botnet infect TBK DVR devices via command injection flaw
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > New Mirai botnet infect TBK DVR devices via command injection flaw
Tech News

New Mirai botnet infect TBK DVR devices via command injection flaw

By admin 3 Min Read
Share
SHARE

A new variant of the Mirai malware botnet is exploiting a command injection vulnerability in TBK DVR-4104 and DVR-4216 digital video recording devices to hijack them.

The flaw, tracked under CVE-2024-3721, is a command injection vulnerability disclosed by security researcher “netsecfish” in April 2024.

The proof-of-concept (PoC) the researcher published at the time came in the form of a specially crafted POST request to a vulnerable endpoint, achieving shell command execution through the manipulation of certain parameters (mdb and mdc).

Kaspersky now reports having caught active exploitation of CVE-2024-3721 in its Linux honeypots from a new Mirai botnet variant using netsecfish’s PoC.

The attackers leverage the exploit to drop an ARM32 malware binary, which establishes communication with the command and control (C2) server to enlist the device to the botnet swarm. From there, the device is likely used to conduct distributed denial of service (DDoS) attacks, proxy malicious traffic, and other behavior.

Mirai's environment checks
<strong>Mirai&#8217;s environment checks</strong><br /><em>Source: Kaspersky</em>

Attack impact and fixes

Although netsecfish reported last year that there were approximately 114,000 internet-exposed DVRs vulnerable to CVE-2024-3721, Kaspersky’s scans show approximately 50,000 exposed devices, which is still significant.

Most infections the Russian cybersecurity firm sees as being associated with the latest Mirai variant impact China, India, Egypt, Ukraine, Russia, Turkey, and Brazil. However, this is based on Kaspersky’s telemetry, and as its consumer security products are banned in many countries, this may not accurately reflect the botnet’s targeting focus.

Currently, it is unclear if the vendor, TBK Vision, has released security updates to address the CVE-2024-3721 flaw or if it remains unpatched. BleepingComputer contacted TBK to ask about this, but we are still waiting for their response.

It’s worth noting that DVR-4104 and DVR-4216 have been extensively re-branded under the Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR brands, so the availability of patches for impacted devices is a complex matter.

The researcher who disclosed the TBK Vision flaw discovered other flaws that fueled exploitation against end-of-life devices last year.

Specifically, netsecfish has disclosed a backdoor account issue and a command injection vulnerability impacting tens of thousands of EoL D-Link devices in 2024.

Active exploitation was detected in both cases only a few days after the PoC’s disclosure. This shows how quickly malware authors incorporate public exploits into their arsenal.

Tines Needle

Patching used to mean complex scripts, long hours, and endless fire drills. Not anymore.

In this new guide, Tines breaks down how modern IT orgs are leveling up with automation. Patch faster, reduce overhead, and focus on strategic work — no complex scripts required.

You Might Also Like

Meta opens WhatsApp to rival AI chatbots to steer clear of EU ire

The 6 Best Grills and Smokers of 2026: Smart, Portable, Pellet

18-year-old NGINX vulnerability allows DoS, potential RCE

78 Irish jobs reportedly at risk

Apple iOS 26.5: Is Your iPhone Ready for These New Features?

TAGGED: botnet, Command Injection, DVR, mirai, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article Tottenham face Thomas Frank dilemma thanks to unusual Brenford clause
Next Article How to Buy a Bike Helmet (2025)
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

FPIs pull out Rs 27,000 cr in May; 2026 outflows hit Rs 2.2 lakh cr-mark
Business
Bitcoin price dives under $79K as US bond market triggers 3% BTC price rout
Crypto
Von der Leyen lauds ‘dynamic new era’ in EU-India relations as Modi visits Sweden
World News
Crypto Systems Could Be Outpaced By Quantum Tech By 2033, Says Hoskinson
Crypto
Nikki Reed Then & Now: Photos of the ‘Twilight’ Actress
Celebrity
Primal Carnage: Evolution, A Remaster of 2015’s Primal Carnage: Extinction, Launches on May 28th
Gaming News
Meta opens WhatsApp to rival AI chatbots to steer clear of EU ire
Tech News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

FPIs pull out Rs 27,000 cr in May; 2026 outflows hit Rs 2.2 lakh cr-mark

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
FPIs pull out Rs 27,000 cr in May; 2026 outflows hit Rs 2.2 lakh cr-mark
May 17, 2026
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?