chiprook
← Security
SecurityOctober 2, 2026, 00:40

Outlaw/Dota botnet changes its SSH fingerprint again

A honeypot recorded a new generation of the mdrfckr botnet from the Outlaw (Dota) group between September 25 and 30, with a modified SSH client configuration. The botnet spreads via SSH brute-force, injects keys into authorized_keys and removes rival botnets' artifacts.

Outlaw/Dota botnet changes its SSH fingerprint again
#Outlaw#Dota#Mdrfckr
Read next
Security

MikroTik patches three RouterOS flaws, including SSH auth bypass

Security

Exposed Router Management: 8.09 Million RouterOS Assets and the 9,560 That Still Answer on SSH

Security

Patching Guide: Closing the CVE-2026-67276 SSH Authentication Bypass on MikroTik Routers

Security

Human attacker exploits Marimo RCE, reaches SSH bastion in eight seconds