Persirai
- First seen
- 2017-05-01 00:00:00
- Malware type
- botnet
- Family
- Malware family
- Last IoC activity
- 2026-07-08 02:00:25
- Profile updated
- 2026-07-07 14:28:32
Targeted industries: professional-services technology-and-telecommunications
Context
Persirai is a botnet malware that targets internet-connected IP cameras. It leverages vulnerabilities to spread and execute distributed denial-of-service (DDoS) attacks. The malware primarily affects IoT devices, converting them into a network of bots for malicious activities.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Elf_Persirai_Auto (yara-rule)
Related threat objects
- Persirai (infrastructure)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Elf.Persirai (report)
- Trend Micro — Persirai New Internet Things Iot Botnet Targets Ip Cameras (report)