GreyNoise says scannings for vulnerable TVT DVRs are spiking
More than 2,500 unique IP addresses were hunting at one point
A 2024 vulnerability allows threat actors to run admin commands on the device
Operators of the Mirai botnet are actively hunting for vulnerable TVT DVRs to assimilate them into the nefarious network, cybersecurity researchers GreyNoise have revealed after observing a spike in exploitation attempts.
In May 2024, security researchers from SSD Secure Disclosure reported on a vulnerability affecting NVMS9000 DVRs built by the Shenzhen-based TVT Digital Technology manufacturer. The vulnerability was described as an authentication bypass, allowing threat actors to run admin commands on the device unabated.
+ There are no comments
Add yours