New Evooo1Bot Linux botnet turns routers into traffic relay nodes
2026-08-16T13:23:20Z•321777a496241694c24cc346dab631ea2cc5603403c41b910b9a0c4521b9b410
EDR evasionEvooo1BotIoT securityLinux botnetMiraiSAP Commerce CloudSOCKS5 proxyWindows zero-dayactive exploitationcyber espionagedata breachfinancial fraudmacOSmercenary spywareransomwareremote code executionrouter compromisethreat intelligence
What happened
BleepingComputer security feed covering active threats and vulnerabilities, including the Evooo1Bot Mirai-based Linux botnet targeting internet-facing routers as SOCKS5 relay nodes, exploitation of macOS and SAP Commerce Cloud vulnerabilities, ransomware and data-theft activity, espionage, fraud, breaches, and newly patched Windows zero-day issues.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 321777a496241694c24cc346dab631ea2cc5603403c41b910b9a0c4521b9b410
- Enrichment time
- 2026-08-16T13:23:20Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.