Linux Worm Targeting Internet Of Things Discovered

The Internet of Things was always set to be a trend that would interest hackers and today researchers have described a piece of Linux malware that appears to be targeting machine-to-machine devices.

The Darlloz worm was seen using an old PHP vulnerability to spread, according to Symantec. Although the fix was issued in March 2012, it’s unclear how well patched machine-to-machine systems are. A Proof of Concept (PoC) exploit which the attacker appears to be using was publicised in late October.

Internet of Vulnerabilities

“The worm is capable of attacking a range of small, Internet-enabled devices in addition to traditional computers,” Symantec said in a blog post. “Variants exist for chip architectures usually found in devices such as home routers, set-top boxes and security cameras.”

No attacks have been reported in the wild, but given the niche area the Linux worm is operating in, many may simply not know they have been infected.

Linux is the operating system of choice on many automated, connected devices, from routers to industrial control systems, many of which also use interfaces delivered via Apache Web servers and PHP servers. Intel x86 systems appear to be the main target of Darlloz.

But the attacker is also sitting on variants for other architectures including ARM, PPC, MIPS and MIPSEL. That would indicate the attacker is highly interested in the Internet of Things.

“Vendors of devices with hidden operating systems and software, who have configured their products without asking users, have complicated matters. Many users may not be aware that they are using vulnerable devices in their homes or offices,” Symantec added.

“Another issue we could face is that even if users notice vulnerable devices, no updates have been provided to some products by the vendor, because of outdated technology or hardware limitations, such as not having enough memory or a CPU that is too slow to support new versions of the software.”

The security giant recently said it believes 2014 will be the year the Internet of Things becomes the Internet of Vulnerabilities. Many have concerns around the drive to connect everything and its impact on privacy.

What do you know about Internet security? Find out with our quiz!

Thomas Brewster

Tom Brewster is TechWeek Europe's Security Correspondent. He has also been named BT Information Security Journalist of the Year in 2012 and 2013.

View Comments

  • Very simple , why do you need to connect things to the internet? I mean really? A toaster? A fridge? A garage? I don't care. These are not utilities that we need.

Recent Posts

Apple, Google Mobile Ecosystems Should Be Investigated, CMA Told

CMA receives 'provisional recommendation' from independent inquiry that Apple,Google mobile ecosystem needs investigation

16 hours ago

Australia Rejects Elon Musk Claim About Social Media Ban For Under-16s

Government minister flatly rejects Elon Musk's “unsurprising” allegation that Australian government seeks control of Internet…

19 hours ago

Northvolt Files For Bankruptcy Protection In US

Northvolt files for Chapter 11 bankruptcy protection in the United States, and CEO and co-founder…

21 hours ago

UK’s CMA Readies Cloud Sector “Behavioural” Remedies – Report

Targetting AWS, Microsoft? British competition regulator soon to announce “behavioural” remedies for cloud sector

2 days ago

Former Policy Boss At X, Nick Pickles, Joins Sam Altman Venture

Move to Elon Musk rival. Former senior executive at X joins Sam Altman's venture formerly…

2 days ago

Bitcoin Rises Above $96,000 Amid Trump Optimism

Bitcoin price rises towards $100,000, amid investor optimism of friendlier US regulatory landscape under Donald…

2 days ago