Breach

Botnet Attacks Exploiting Edimax IP Camera Zero-Day Ongoing For Nearly One Year

(Adobe Stock)

Vulnerable Edimax IP cameras affected by the critical command injection zero-day, tracked as CVE-2025-1316, have been targeted by numerous Mirai-based botnets since May, reports SecurityWeek.

Initial exploitation of the flaw in May was followed by a months-long pause before surging in September and from January to February, but the availability of a proof-of-concept exploit since June 2023 suggests earlier attack attempts, according to an analysis from Akamai.

Observed intrusions by the Mirai-based botnets involved the targeting of devices with default credentials to facilitate Mirai deployment, with one of the detected botnets also abusing an unpatched Totolink product flaw, tracked as CVE-2024-7214.

Organizations have been urged to ensure the usage of up-to-date software and firmware to prevent botnet compromise. Edimax has disclosed that the vulnerability, which is present in IP cameras that have reached end-of-life over 10 years ago, could no longer be patched because of source code and development environment unavailability.

Related Terms

Attack Vector

You can skip this ad in 5 seconds

Cookies

This website uses cookies to improve your experience, provide social media features and deliver advertising offers that are relevant to you.

If you continue without changing your settings, you consent to our use of cookies in accordance with our privacy policy. You may disable cookies.