ShadowV2

Malware type
botnet, worm
Family
Malware family
Profile updated
2026-07-07 14:29:37

Targeted industries: technology-and-telecommunications professional-services

Context

According to Fortinet, this is a Mirai fork propagating through multiple vulnerabilities. ShadowV2 had previously been observed targeting AWS EC2 instances in campaigns disclosed in September 2025.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Elf.Shadowv2 (report)
  • fortinet.com — Shadowv2 Casts A Shadow Over Iot Devices (report)

External references