| Many articles have been written
about the importance of changing default usernames
and passwords on computer and IT hardware. One
example of how that's important is the new Psyb0t.
This new malware is also known as the Chuck
Norris bot. It has compromised over 100,000
devices simply because the default passwords
were not changed.
This happens when the following conditions
are in place: (1) Remote login of the device
is allowed and (2) the default username and
password for the device were not changed.
If your router or cable/dsl modem gets infected
the malware becomes entrenched in your network's
internet gateway. That means that the following
is available to the attacker:
- The malware can prevent access to the
infected device
- The local network can be scanned for
other vulernable computers or devices
- The infected device can assist in DDOS
(denial of service) attacks
- The attacker can change your gateway DNS
settings and preventing access to internet
One good thing is that the developer of this
malware was lazy and so the malware resides
in the RAM, so all it takes is a restart of
the device to remove the malware. However,
if the malware changed your password you will
not be able to go in and change it again.
This is very easy to avoid. The following
steps should be taken immediately:
- Disable remote access to your router or
modem
- Change all default login settings
- Use a strong password
- Disable UPnP (Universal Plug and Play)
- Reboot the device
- Check for firmware updates and install
any that are found.
Luckily not becoming a part of the zombie
brigade is very easy. If these steps do not
seem easy to do and you require assistance,
please do not hesitate to call us at (951)
675-5134 to set up an appointment and Titan
Technology will take these steps
for you. |