Mark RadarMARK RADAR
EN

Hackers Use AI to Build TuxBot IoT Botnet

1 reports · First detected 2026-07-16 · Last active 2026-07-16

As generative artificial intelligence advances rapidly, hackers are also using large language models to accelerate malware development. The emergence of the TuxBot Internet of Things botnet confirms that AI is already being used to build such networks. Hackers once needed substantial manpower to write malicious code, but AI assistance now allows even attackers with limited technical skills to rapidly generate cross-platform malware. This poses a severe new security challenge for smart devices worldwide.

Cybersecurity team Unit 42 disclosed the new TuxBot botnet on July 15, 2026. The hackers used AI to write the software at zero cost. Although a lack of review caused some features to malfunction, its core DDoS attack remained operational. The malware uses 1,496 sets of default credentials for brute-force attacks and supports 17 processor architectures. No specific financial losses have been reported so far.

All Coverage

1 original reports

The Backstory

The history behind this event

No historical echoes for this signal

Mark Radar|MARK RADAR
All times are in Taipei time (GMT+8)