{"id":9321,"date":"2017-10-25T12:28:24","date_gmt":"2017-10-25T16:28:24","guid":{"rendered":"http:\/\/avtech.com\/articles\/?p=9321"},"modified":"2025-10-24T09:29:20","modified_gmt":"2025-10-24T13:29:20","slug":"reaper-botnets-avtech","status":"publish","type":"post","link":"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/","title":{"rendered":"Reaper, Botnets, and AVTECH Security"},"content":{"rendered":"<p>This week it was announced that a <a href=\"https:\/\/sputniknews.com\/world\/201710231058455376-reaper-botnet-growing-fast\/\" target=\"_blank\" rel=\"noopener\">new IoT botnet malware called Reaper<\/a> was spreading quickly around the internet, infecting over one million devices in a short period of time.<\/p>\n<p>What makes this botnet concerning is how sophisticated it is. Unlike the Mirai botnet which used default device passwords to spread, Reaper has the ability to crack passwords and exploit other vulnerabilities in order to infect devices.<\/p>\n<p>Reaper has not begun spreading any malicious traffic as of yet, but it does have the potential to trigger DDoS attacks among the internet.<\/p>\n<p>We wanted to discuss the impact of malware on IoT devices because once again, the malware in the news is reported to have infected IP cameras made by AVTech Taiwan, a company that shares part of our name but has no other relation to us. AVTECH Software, Inc. does not manufacture any IP cameras, however our Room Alert monitors do exist in the IoT space.<\/p>\n<h3><strong><a href=\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280.jpg\"><img decoding=\"async\" loading=\"lazy\" class=\"alignright size-medium wp-image-9322\" src=\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-300x200.jpg\" alt=\"\" width=\"300\" height=\"200\" srcset=\"https:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-300x200.jpg 300w, https:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-768x512.jpg 768w, https:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-1024x682.jpg 1024w, https:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280.jpg 1280w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a>Reaper and Room Alert&#8217;s Security&nbsp;<\/strong><\/h3>\n<p><a href=\"https:\/\/avtech.com\/articles\/6072\/room-alert-iot-device-security\/\" target=\"_blank\" rel=\"noopener\">As we noted last year<\/a> when the Mirai botnet began to make news, AVTECH takes several security precautions when it comes to securing and protecting our hardware, software, and devices.<\/p>\n<p>Room Alert is firmly within the IoT sphere, as it\u2019s designed to send alerts and notifications to users based on the environment factors it\u2019s monitoring. Room Alert can also take automatic corrective action based on those alerts, such as turning on a water pump or fan if certain environment triggers are set up.<\/p>\n<p>It\u2019s important to note that although Room Alert is considered an IoT device, we\u2019ve taken a good number of steps to help protect the security of our devices and our customers.<\/p>\n<h3><strong>Purpose Built Firmware in Room Alert<\/strong><\/h3>\n<p>Room Alert PRO\u2019s firmware is purpose built, which means that it\u2019s specifically designed for Room Alert devices. One major security flaw with some IoT devices is tied into the firmware and software the devices run, as we\u2019ve seen with other botnets <a href=\"https:\/\/krebsonsecurity.com\/tag\/mirai-botnet\/\" target=\"_blank\" rel=\"noopener\">such as Mirai last year<\/a>. When IoT devices run common Linux operating system versions, or commonly used utilities such as Busybox, it\u2019s easier to find ways to manipulate those devices from the outside. Room Alert runs a very specific firmware that\u2019s set up to only provide the functions the devices need to monitor and report \u2013 that\u2019s it.<\/p>\n<h3><strong>Secure Monitoring with RoomAlert.com<\/strong><\/h3>\n<p>Our Room Alert Account platform offers our customers an easy and secure way to monitor and manage Room Alert. Users can see their devices, reports, alerts, and data directly within their Room Alert Account from any internet-connected device. Those reports and data are pushed directly to RoomAlert.com from their Room Alert monitor; your Room Alert Account does not push any data back to Room Alert monitors.<\/p>\n<p>Since traffic is only one way, from Room Alert monitors on the customer\u2019s network to RoomAlert.com, there\u2019s no need for users to open ports on their local firewalls or modify security protections. Traffic doesn\u2019t need to get in when customers use RoomAlert.com, and users don\u2019t need to worry about those additional open firewall ports adding additional potential points of entry from malicious traffic.<\/p>\n<h3><strong>Room Alert Doesn\u2019t Use Universal Plug and Play<\/strong><\/h3>\n<p>Universal Plug and Play, commonly referred to as UPnP, is a protocol that\u2019s widely used in internet-connected devices to make them easy to set up, and also allows them to discover other devices on their local networks to \u201ctalk to\u201d. This protocol has been identified as a major vulnerability when it comes to outside malicious traffic, and has been <a href=\"https:\/\/www.howtogeek.com\/122487\/htg-explains-is-upnp-a-security-risk\/\" target=\"_blank\" rel=\"noopener\">recommended to be disabled in many instances<\/a>.<\/p>\n<p>Room Alert does not use UPnP to connect itself to other local network devices or RoomAlert.com for remote monitoring. Again, as we noted above Room Alert monitors use custom firmware and are designed to provide one-way traffic to our RoomAlert.com platform, the preferred way to monitor your Room Alert monitors. By not using UPnP, we\u2019ve removed one major way IoT devices can be exploited by malicious users and traffic.<\/p>\n<h3><strong>Heightened Security in the Age of IoT<\/strong><\/h3>\n<p><a href=\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2016\/05\/room-alert-ui2-composite.png\"><img decoding=\"async\" loading=\"lazy\" class=\"alignleft size-medium wp-image-4482\" src=\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2016\/05\/room-alert-ui2-composite-300x270.png\" alt=\"\" width=\"300\" height=\"270\" srcset=\"https:\/\/avtech.com\/articles\/wp-content\/uploads\/2016\/05\/room-alert-ui2-composite-300x270.png 300w, https:\/\/avtech.com\/articles\/wp-content\/uploads\/2016\/05\/room-alert-ui2-composite.png 724w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a>Room Alert users around the world should rest assured that their environment monitors are strongly protected against intrusion or infection from outside sources. AVTECH Software, Inc. has always had an eye on security when designing Room Alert monitors, Device ManageR, and RoomAlert.com. We try to be as proactive as possible when it comes to ensuring user security, and have always done so.<\/p>\n<p>If you find yourself the user of any of the affected manufacturers such as <a href=\"https:\/\/www.nbcnews.com\/business\/consumer\/get-ready-reaper-botnet-it-s-already-infected-over-million-n813826\" target=\"_blank\" rel=\"noopener\">Linksys, Dlink, AVTech Taiwan, and others<\/a>, please take a few moments to research the security updates that may be available for your devices. Many manufacturers have already started releasing updates that address the vulnerabilities.<\/p>\n<p>Thanks to the design features noted above, AVTECH\u2019s Room Alert is not one of the IoT devices potentially affected by Reaper. This does not mean that you should neglect other devices on your network, however. Always be proactive with your security, just as you are with your environment monitoring. Protect yourselves against intrusion, hacking, and environment-caused downtime, and your organization will enjoy increased uptime and productivity.<\/p>\n<p><em>Note: The former GoToMyDevices online monitoring and management platform was migrated into RoomAlert.com in December 2017. For more information, please see our <a href=\"http:\/\/avtech.com\/articles\/9567\/gotomydevices-is-now-roomalert-com\/\" target=\"_blank\" rel=\"noopener\">announcement article and FAQ<\/a>.&nbsp;<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This week it was announced that a new IoT botnet malware called Reaper was spreading quickly around the internet, infecting over one million devices in a short period of time. What makes this botnet concerning is how sophisticated it is. Unlike the Mirai botnet which used default device passwords to spread, Reaper has the ability [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0},"categories":[20],"tags":[36,47,65,93],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v15.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<meta name=\"description\" content=\"The announcement of the Reaper botnet has again brought IoT security into question. AVTECH&#039;s Room Alert monitors have built-in protection against intrusion.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Reaper, Botnets, and AVTECH Security - AVTECH\" \/>\n<meta property=\"og:description\" content=\"The announcement of the Reaper botnet has again brought IoT security into question. AVTECH&#039;s Room Alert monitors have built-in protection against intrusion.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/\" \/>\n<meta property=\"og:site_name\" content=\"AVTECH\" \/>\n<meta property=\"article:published_time\" content=\"2017-10-25T16:28:24+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-10-24T13:29:20+00:00\" \/>\n<meta property=\"og:image\" content=\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-300x200.jpg\" \/>\n<meta name=\"twitter:card\" content=\"summary\" \/>\n<meta name=\"twitter:creator\" content=\"@RussBenoit\" \/>\n<meta name=\"twitter:site\" content=\"@AVTECHSoftware\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\">\n\t<meta name=\"twitter:data1\" content=\"Russell Benoit\">\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\">\n\t<meta name=\"twitter:data2\" content=\"4 minutes\">\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/avtech.com\/articles\/#website\",\"url\":\"https:\/\/avtech.com\/articles\/\",\"name\":\"AVTECH\",\"description\":\"Frequently Asked Questions\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":\"https:\/\/avtech.com\/articles\/?s={search_term_string}\",\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"http:\/\/avtech.com\/articles\/wp-content\/uploads\/2017\/10\/security-265130_1280-300x200.jpg\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/#webpage\",\"url\":\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/\",\"name\":\"Reaper, Botnets, and AVTECH Security - AVTECH\",\"isPartOf\":{\"@id\":\"https:\/\/avtech.com\/articles\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/#primaryimage\"},\"datePublished\":\"2017-10-25T16:28:24+00:00\",\"dateModified\":\"2025-10-24T13:29:20+00:00\",\"author\":{\"@id\":\"https:\/\/avtech.com\/articles\/#\/schema\/person\/a69a6dcca44758552972ea0f504d3ea6\"},\"description\":\"The announcement of the Reaper botnet has again brought IoT security into question. AVTECH's Room Alert monitors have built-in protection against intrusion.\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/avtech.com\/articles\/9321\/reaper-botnets-avtech\/\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/avtech.com\/articles\/#\/schema\/person\/a69a6dcca44758552972ea0f504d3ea6\",\"name\":\"Russell Benoit\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/avtech.com\/articles\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/4e35ce8839348e1ba5f28f9123e3a8fb?s=96&d=mm&r=g\",\"caption\":\"Russell Benoit\"},\"sameAs\":[\"https:\/\/twitter.com\/RussBenoit\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","_links":{"self":[{"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/posts\/9321"}],"collection":[{"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/comments?post=9321"}],"version-history":[{"count":8,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/posts\/9321\/revisions"}],"predecessor-version":[{"id":29614,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/posts\/9321\/revisions\/29614"}],"wp:attachment":[{"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/media?parent=9321"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/categories?post=9321"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/avtech.com\/articles\/wp-json\/wp\/v2\/tags?post=9321"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}