Threat Level: green Handler on Duty: Johannes Ullrich

SANS ISC: ISU Breach SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms: https://isctv.sans.edu

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
ISU Breach
I'm a reporter from Iowa, where Iowa State University recently experienced a data breach. 5 Synology servers were infected with malware that slaved them into a bitcoin mining botnet. I'm curious.
What do you guys know about this? What is this malware called? How does it work? Why are Synology's servers vulnerable to these kinds of attacks? Are routers vulnerable too? How many attacks like this have you seen? Is there any way to track who did launched the attack?
Can a professional source please call me? Today?

(319)291-1581.

email is:
mike.anderson@wcfcourier.com
HunterJD

2 Posts

Sign Up for Free or Log In to start participating in the conversation!