Friday, October 23, 2015

Hacking CCTV camera to launch DDoS attack.


                A new era has been emerged in which we started giving intelligence to almost all the accessories and make them smart. #IoT (Internet of Things) has become a trend in which all the devices are connected to the Internet. 

                 The major issue that has to be discussed when the topic IoT comes up is that #Cyber Security because it is easy for any hacker to break the security when all the components are connected to the Internet.

                  Recently there has been a hack recorded that uses the CCTV cameras to launch a DDoS (Distributed Denial of Service) attack at large scale targeting a web server.

                  CCTV cameras are the normal components that are connected to the Internet for the view of video footage. Most of the CCTV cameras that are connected are not at all secured and many of the devices are left out with the default configurations.

                  One of the default configuration is leaving the default password and default login name. There has been a DDoS attack that targets a web server with 20000 page requests to the server.

                    While investigating it has been noted that the DDoS was due to the flooded HTTP Get page request and the nodes that has been used for launching the attack are 900 CCTV cameras.

                    All the CCTV cameras that are responsible for the attack are infected with the Malware and it has been targeted on linux platform. The CCTV cameras are hacked to form a botnet and then used to launch a DDoS attack.

                     The CCTV cameras are identified and the malware has been removed from the host. All the CCTV cameras should be properly configured.

                     It has been noted that all the cameras lack security mechanism to protect themselves from the Cyber Terrorists.

P.S : The post is to create awareness and not to be misused.

No comments:

Post a Comment