PULSE NAME
Long Live The Vo1d Botnet: New Variant Hits 1.6 Million TV Globally
WHITE Vo1d AlienVault 2025-02-28 Modified: 2025-03-30
51
IOCs
HIGH VOLUME
The Vo1d botnet has infected 1.6 million Android TV devices across 200+ countries, posing a significant cybersecurity threat. This new variant demonstrates enhanced stealth and resilience, utilizing RSA encryption, DGA-based infrastructure, and a modified XXTEA algorithm. The botnet's scale and capabilities surpass previous major attacks, potentially enabling devastating DDoS attacks or unauthorized content broadcasting. Analysis reveals a sophisticated multi-component system including downloaders, backdoors, and modular malware for proxy services and ad fraud. The botnet's rapid growth and evasion techniques highlight the urgent need for improved security measures in smart TV devices and set-top boxes.
Indicators of Compromise (1 / 51 total)
All FileHash-MD5 FileHash-SHA1 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA1 70672a8ccee11976077ff4f3dc16966bbf67e965 2025-02-28