Cyclops Blink botnet to be targeting Asus routers

It was recently reported that the Cyclops Blink botnet would be targeting Asus routers in new rounds of cyberattacks.

Indeed, the botnet is suspected to have been created by the Russian advanced persistent threat (APT) group – Sandworm/Voodoo Bear. Both the UK National Cyber Security Centre (NCSC) and the United States’ Cybersecurity and Infrastructure Security Agency (CISA) have warned governments of the threat the botnet represents.

The APT is especially dangerous as it has been linked to the use of BlackEnergy malware against Ukraine’s electricity grid and cyberattacks against Georgia. Yet, there is no proof that the malware is state-sponsored or targets on behalf of the Russian government.

Asus has then launched an investigation into the Cyclops Blink botnet. If an organization’s devices have been infected, it needs to get a new router as soon as possible.