Botnet

Hide and Seek

First seen: 2018-01 • Status: inactive

Currently Inactive

Hide and Seek was an IoT botnet that could survive when you restarted your device - unusual for IoT malware.

Overview

Hide and Seek was an IoT botnet using a custom-built P2P protocol. It was notable for persistence that survived device reboots.

Also Known As

HNS

How It Spreads

  • Telnet brute force
  • Exploitation

What It Does

  • Survives reboot
  • P2P communication
  • Data exfiltration

Is your business exposed?

Target Platforms

Linux (IoT)

Detection Tips

  • Monitor for persistent IoT infections
  • Check firmware integrity

MITRE ATT&CK Techniques

T1110, T1542

If You're Infected

  1. 1.

    Reflash device firmware

  2. 2.

    Change all credentials

Related Malware

Mirai, Hajime

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required