Dysphoria IoT botnet shifts to blockchain C2 and relay relays after JackSkid
Source headline: Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption
Intelligence Summary
The Dysphoria IoT botnet has updated its infrastructure to use blockchain-based name services for command-and-control discovery. After a law-enforcement disruption targeting JackSkid infrastructure, the botnet also added infected-device relays to improve resilience. Researchers say these changes reduce the effectiveness of takedowns that rely on centralized C2 details. Affected victims include organizations with exposed or poorly secured IoT devices. Administrators should review IoT segmentation, restrict outbound connections, and hunt for suspicious relay and C2 traffic.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.