covert campaign utilizing SOHO routers: ZuoRAT


An interesting read about how a covert campaign works: ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks (

Well, yeah. Worms infecting SOHO routers have been a thing for over a decade, as I learned by logging telnet login attempts from other users on the same ISP. I always knew there are going to be botnets running on those boxes.

Americans :-DD


