Logo
News Ababil
Explore
Global Intel (English)
Global Intel (English)VOICE
Bengali (বাংলা)
Spanish (Español)VOICE
French (Français)VOICE
German (Deutsch)
Arabic (العربية)
Hindi (हिन्दी)VOICE
Chinese (中文)
Japanese (日本語)
Russian (Русский)
SYS_NODE: ONLINE // Cyber Security

Tengu Botnet Exploits Linux Watchdog to Auto‑Reboot Infected Systems

DECRYPTED BY: Kaelen Frost | TIMESTAMP: 2026-07-28 T 21:26:27 Z | [ 1 MIN READ ]
Tengu Botnet Exploits Linux Watchdog to Auto‑Reboot Infected Systems
1 Min Read
Share

Tengu botnet’s watchdog‑driven reboot mechanism

The Tengu botnet has added a stealthy persistence trick: it abuses the hardware watchdog present on many Linux‑based appliances to force a cold reboot when defenders terminate its main process. Once the system powers up, secondary launchers embedded in the firmware seize the opportunity to resurrect the malicious payload.

Security researchers at Nozomi Networks Labs first spotted the dropper after it infiltrated their honeypots via brute‑force Telnet logins. The botnet currently boasts ↑ 25 distributed denial‑of‑service vectors, ranging from UDP floods to HTTP GET storms.

“Watchdog‑enabled reboot is a game‑changer for malware persistence,” said lead analyst Maya Patel.

Analysts warn that the technique could complicate remediation efforts, especially in environments still coping with the pandemic-driven expansion of insecure IoT deployments. For broader context on botnet evolution, see Reuters.

Analysis by: Kaelen Frost
Lead Cybersecurity Analyst
Global Data Feed

More from this Intel

JFrog Artifactory flaws exploited for admin takeover and backdoor insertion

JFrog Artifactory flaws exploited for admin takeover and backdoor insertion

Sep 11, 2026
Android malware Mantax Otax: Hybrid ransomware‑spyware strikes devices

Android malware Mantax Otax: Hybrid ransomware‑spyware strikes devices

Sep 11, 2026
News

Exposed Plex Servers Pose Massive Cyber Risk as 36,000 Remain...

Sep 09, 2026
TeamPCP Hackers Arrested in Australia: Two Cybercriminals Nabbed

TeamPCP Hackers Arrested in Australia: Two Cybercriminals Nabbed

Sep 08, 2026
AI Hidden Vulnerabilities Vanish: Are Software Vendors Keeping Pace?

AI Hidden Vulnerabilities Vanish: Are Software Vendors Keeping Pace?

Sep 07, 2026
FBI Probe Driver License Breach Exposes 153 Million Records on Dark Web

FBI Probe Driver License Breach Exposes 153 Million Records on Dark...

Sep 06, 2026

Join The Elite

Get the top 0.1% global intelligence and market insights delivered directly to your inbox before the masses.

We respect your privacy. No spam.