Persirai

First seen
2017-05-01 00:00:00
Malware type
botnet
Family
Malware family
Last IoC activity
2026-07-08 02:00:25
Profile updated
2026-07-07 14:28:32

Targeted industries: professional-services technology-and-telecommunications

Context

Persirai is a botnet malware that targets internet-connected IP cameras. It leverages vulnerabilities to spread and execute distributed denial-of-service (DDoS) attacks. The malware primarily affects IoT devices, converting them into a network of bots for malicious activities.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Elf_Persirai_Auto (yara-rule)

Related threat objects

  • Persirai (infrastructure)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Persirai (report)
  • Trend Micro — Persirai New Internet Things Iot Botnet Targets Ip Cameras (report)

External references