Nokia Threat Intelligence Report finds malicious IoT botnet activity has sharply increased

- Number of IoT devices (bots) engaged in botnet-driven DDoS attacks rose from around 200,000 a year ago to approximately 1 million devices
The latest Nokia Threat Intelligence Report released today has found that IoT botnet DDoS traffic, originating from a large number of insecure IoT devices with the aim of disrupting telecom network services for millions of users, increased fivefold over the past year, following Russia’s invasion of Ukraine and stemming from the growing increase in profit-driven hacking collectives operated by cybercriminals.
This sharp increase, also supplemented by the increased use of IoT devices by consumers around the world, was first noticed at the beginning of the Russia-Ukraine conflict but has since spread to other parts of the world, with botnet-driven DDoS attacks being used to disrupt telecom networks as well as other critical infrastructure and services. The number of IoT devices (bots) engaged in botnet-driven DDoS attacks rose from around 200,000 a year ago to approximately 1 million devices, generating more than 40% of all DDoS traffic today.
The most common malware in telecommunication networks was found to be a bot malware that scans for vulnerable devices, a tactic associated with a variety of IoT botnets. There are billions of IoT devices worldwide, ranging from smart refrigerators, medical sensors, and smart watches; many of which have lax security protections.
The Threat Intelligence Report also found that the number of trojans targeting personal banking information in mobile devices has doubled to 9%, putting millions of users around the world at heightened risk of having their personal financial and credit card information stolen. A trojan is nefarious software code disguised as being safe for use.
The report, however, did find some encouraging news, showing that malware infections in home networks declined from a Covid-high of 3% to 1.5%, close to the pre-pandemic level of 1%, as malware campaigns targeting the wave of at-home workers tapered off, and more people returned to office work environments.
Those findings are based on data aggregated from monitoring network traffic on more than 200 million devices globally where Nokia NetGuard Endpoint Security product is deployed.
The Threat Intelligence Report is compiled by experts at the Threat Intelligence Center in Canada, the Nokia Cyber Security Center in France; the Nokia Security Operations Center in India; and Nokia Deepfield, a part of Nokia focusing on software applications covering network analytics and DDoS security.
Hamdy Farid, Senior Vice President, Business Applications at Nokia said: “The key findings in this report underline both the scale and sophistication of cybercriminal activity today. A single botnet DDoS attack can involve hundreds of thousands of IoT devices, representing a significant threat to networks globally. To mitigate the risks, it’s essential that service providers, vendors, and regulators work to develop more robust 5G network security measures, including implementing telco-centric threat detection and response, as well as robust security practices and awareness at all company levels.”
Related News.
September 3, 2026
Cyprus Maritime Innovation takes Centre Stage at SMM Hamburg 2026
Underscoring its expanding role as a premier international hub for cutting-edge maritime technology and sustainable shipping, the Republic of Cyprus…
September 3, 2026
Trump seeks to refill US oil reserve with Venezuela deal but faces long delay
U.S. President Donald Trump said on the 30th (local time) that he would refill the U.S. Strategic Petroleum Reserve, which has been depleted with…
September 3, 2026
US Navy Official visits South Korean Shipyards in private
With U.S. President Donald Trump pushing a plan to allow overseas construction of U.S. warships, attention is focusing on whether the building of…
September 3, 2026
SES and De Boer Marine expand collaboration with FlexMaritime deployment across Global Markets
SES, a leading space solutions company, and De Boer Marine, a leading provider of top-quality marine equipment and maritime connectivity services,…
September 3, 2026
New ESG guidance to help maritime industry turn sustainability into commercial advantage
New framework helps shipowners and ports align ESG strategy with access to capital, charterer expectations and long-term asset value. Maritime…
September 3, 2026
Britannia P&I Club analysis finds four in five crew deaths linked to illness rather than accidents
New report highlights cardiovascular disease as leading cause of fatalities and raises concerns over mental health risks among younger seafarers.…
September 3, 2026
The Swedish Club launches new Loss Prevention podcast, Knot Another Lesson
The Swedish Club has launched Knot Another Lesson, a new podcast exploring the practical lessons, emerging risks and operational challenges shaping…
September 3, 2026
Lloyd’s Register appoints Jens Grunenberg as Senior Representative for Germany
Lloyd’s Register has appointed Jens Grunenberg as its Senior Representative for Germany, effective 1 September. Based in Hamburg, Grunenberg will…
September 3, 2026
Indian Register of Shipping sets sights on Hamburg for European Expansion
Indian Register of Shipping, a leading international classification society and full member of the International Association of Classification…
September 3, 2026
MOL completes Merger of 6 Ship Management Companies
Unifying Management of Over 200 Vessels and Strengthening Safety Mitsui O.S.K. Lines, announced that it has completed the integration of the MOL…
Subscribe to our newsletter!
if you dont want to swim alone in the ocean of news, sign up for the newsletter, and you will receive daily all the important news of world shipping!
Design & Development by P.KAN.DESIGNER
© 2026 Cyprus Shipping News. All rights reserved
Design & Development by P.KAN.DESIGNER
© 2026 Cyprus Shipping News. All rights reserved























