RapperBot
- Malware type
- botnet
- Family
- Malware family
- Last IoC activity
- 2026-06-26 08:55:32
- Profile updated
- 2026-07-07 14:29:05
Context
RapperBot is a variant of the Mirai botnet primarily focused on brute-forcing SSH servers to gain unauthorized access to devices. This malware can leverage compromised systems for further attacks, highlighting a persistent threat across internet-of-things (IoT) devices.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Elf.Rapper Bot (report)
- fortinet.com — Rapperbot Malware Discovery (report)
- wsj.com — Oregon Man Accused Of Operating One Of Most Powerful Attack Botnets Ever Seen 380B2Caf (report)
- bitsight.com — Rapperbot Infection Ddos Split Second (report)
- fortinet.com — New Rapperbot Campaign Ddos Attacks (report)
- socradar.io — Linux Malware Rapperbot Brute Forcing Ssh Servers (report)