Kimwolf IoT Botnet Infects 2+ Million Devices, Targets Corporate and Government Networks
By
feross
4mo ago· 6 min readenNews
100/100
Golden Brown
Bagelometer↗
Baker's choice. Dense with flavour, light on filler.
Score100TypenewsSentimentnegative
Summary
A new IoT botnet called Kimwolf has infected over 2 million devices, primarily targeting corporate and government networks. The malware forces compromised systems to participate in massive DDoS attacks and relay malicious traffic. Kimwolf's ability to scan local networks for other vulnerable IoT devices makes it particularly dangerous, with research showing it has spread rapidly in late 2025 through social engineering tactics and exploiting weak security in IoT devices.
Key quotes
· 4 pulledKimwolf's ability to scan the local networks of compromised systems for other IoT devices to infect makes it a sobering threat to organizations
A new Internet-of-Things (IoT) botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems to participate in massive distributed denial-of-service (DDoS) attacks
new research reveals Kimwolf is surprisingly prevalent in government and corporate networks
Kimwolf grew rapidly in the waning months of 2025 by tricking vulnerable systems
A new Internet-of-Things botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems to participate in massive distributed denial-of-service (DDoS) attacks and to relay other malicious and abusive Internet traffic. Kimwolf's

