cognitive cybersecurity intelligence

News and Analysis

Search

Botnet campaign hits unpatched TP-Link Archer AX-21 routers

The “Ballista” botnet campaign is exploiting a high-level security flaw to infect unpatched TP-Link routers. Detected by Cato CTRL researchers in January 2025, it has affected over 6,000 devices in countries including Brazil, the UK, and Turkey, with its main targets being the US, Australia, China, and Mexico, where it targets manufacturing, healthcare, and tech organizations. Once installed, Ballista can run remote commands, launch DoS attacks, and scour through sensitive files.

Source: www.fudzilla.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

Identity and Access Management (IAM)

Identity and Access Management (IAM)

CISOs face mounting pressure to secure digital identities, with 80% of breaches stemming from compromised credentials. Identity and Access Management (IAM) must evolve into a