Mystery malware destroys 600,000 routers from a single ISP during 72-hour span(back in October)
report published Thursday by security firm Lumen Technologies’ Black Lotus Labs may shed new light on the incident, which Windstream has yet to explain
The Pumpkin Eclipse
@ecksmc Read about this earlier. Was this a,test? I have concerns about this fall.
@Klaatu_Veratta_Nectarine The actor took deliberate steps to cover their tracks by using commodity malware known as Chalubo
rather than a custom-developed toolkit. A feature built into Chalubo allowed the actor to execute custom Lua scripts on the infected devices
As for a test 😏 all malware attacks are kinda a "test" in ways for future "operations" you could say...
@ecksmc I'm just saying. I told all my kids to stock up enough water, cash to cover purchases and basic supplies for like 3 months in September just in case credit cards/supply chain/ other fuck ups occur prior to election. Because can we trust these fuckers? NO. The former guy tried to execute the whole line of succession to presidency. It's probably fine. But yeah.
@Klaatu_Veratta_Nectarine Black Lotus Labs representative said in an interview that researchers can't rule out that a nation-state is behind the router-wiping incident affecting the ISP. But so far, the researchers say they aren't aware of any overlap between the attacks and any known nation-state groups they track.