Iranian Botnet Exposed via Open Directory: 15-Node Relay Network and Active C2
hunt.io | research | #threat-intelligence | #malware | #botnet | #ddos | #iran | #relay-network | #tls-pivoting | #censorship-bypass
Summary
A TLS certificate exposed a 15-node Iranian relay network: the operator compiled DDoS bots on victims, deployed them via 500-session SSH scripts, and ran censorship-bypass tunnels on the same hosts.
- Published
- Collected
Skip to content