/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Researchers: Friday's internet outage, caused by DDoS attack on DynDNS, was powered in part by a Mirai-based botnet of DVRs and cameras with XiongMai components

A massive and sustained Internet attack that has caused outages and network congestion today for a large number of Web sites …

Krebs on Security Brian Krebs

Context & Ripple Effects

The outage lands three weeks after the public release of Mirai's source code, which turned a private IoT botnet into a recipe anyone could compile. Researchers now say Friday's attack on DynDNS — the DNS provider whose congestion took large swaths of the web unreachable — was powered in part by DVRs and cameras built on XiongMai components, conscripted via default credentials.

First-order effects

  • Every site depending on Dyn for resolution was effectively offline during the attack, making a single DNS vendor's availability a web-wide single point of failure.
  • XiongMai-component device owners are implicated directly: their DVRs and cameras were the ammunition, and later analysis put the owner-side cost of Mirai attacks in the hundreds of thousands of dollars per incident (~$324K for the KrebsOnSecurity attack alone).

Second-order effects

  • DNS providers and major sites are pushed toward multi-provider resolution after one vendor's compromise cascaded across unrelated destinations.
  • With the source code public, Mirai-derived botnets become reusable tooling rather than a one-off weapon — within months hackers were pointing them at the domain hardcoded into WannaCry to try to revive the ransomware by drowning its kill-switch.

Third-order effects

  • Attribution of harm to unsecured-device owners, as the cost research does, builds the case for holding device makers like XiongMai responsible for default credentials and unpatchable firmware — the structural fix regulators would eventually reach for.
  • The later finding that Dyn was collateral damage in an attack aimed at PlayStation Network name servers (the original target) shows how shared infrastructure converts any two parties' dispute into an internet-wide outage.

The trend: Consumer IoT hardware is shifting from a security afterthought to the internet's default attack infrastructure, forcing accountability upstream from device owners to component makers.