Hajime

First seen
2016-10-16 00:00:00
Malware type
worm
Family
Malware family
Last IoC activity
2026-07-22 04:15:10
Profile updated
2026-07-07 14:25:04

Targeted industries: energy-and-utilities technology-and-telecommunications

Context

Hajime is a peer-to-peer worm that targets IoT devices by exploiting vulnerabilities to propagate. Unlike other malware such as Mirai, Hajime does not carry a destructive payload and is designed to establish a botnet for controlling compromised devices.

Related threat objects

  • Hajime (infrastructure)

Reports & references

  • blog.netlab.360.com — P2P Botnets Review Status Continuous Monitoring (report)
  • malpedia.caad.fkie.fraunhofer.de — Elf.Hajime (report)
  • Broadcom/Symantec — Hajime Worm Battles Mirai Control Internet Things (report)
  • github.com — Hajime Hashes (report)
  • par.nsf.gov — 10096257 (report)
  • security.radware.com — Downloadasset (report)
  • blog.netlab.360.com — Hajime Status Report En (report)
  • x86.re — Hajime A Follow Up (report)
  • blog.netlab.360.com — Quick Summary Port 8291 Scan En (report)
  • security.rapiditynetworks.com — Hajime (report)

External references