
TRC analysis shows KadNap malware exploiting CVE-2024-3080 and CVE-2024-3912 to hijack over 14,000 Asus routers into a stealth botnet. Attackers use modified Kademlia DHT protocol to hide C2 infrastructure within peer-to-peer networks, evading traditional detection. #CloudSecurity 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/kadnap-malware-2026-asus-routers-botnet
Post summary
KadNap malware is actively exploiting CVE‑2024‑3080 and CVE‑2024‑3912, hijacking more than 14,000 Asus routers to build a stealth botnet that uses a modified Kademlia DHT protocol for peer‑to‑peer C2.
