A new Mirai botnet variant, Aquabotv3, is spreading this time offering DDoS-as-a-service by exploiting vulnerabilities in Mitel SIP phones. What sets this strain apart is its ability to establish direct communication with attacker-controlled command-and-control (C2) servers. Researchers have identified it as an evolution of Aquabot, that actively exploits CVE-2024-41710, a command injection flaw in Mitel SIP devices. This development highlights the growing sophistication of botnet operations and the increasing risks to unpatched enterprise communication systems.
