Pumpkin Eclipse: The Router Heist That Left 600,000 Devices Toasted

Unknown miscreants disabled over 600,000 routers using the Chalubo malware in an attack dubbed “Pumpkin Eclipse.” The incident took place within 72 hours in October 2023, targeting specific ActionTec models. Security researchers speculate weak credentials or exposed interfaces were exploited, leaving the ISP to replace…

Hot Take:

Just when you thought your router was safe, “Pumpkin Eclipse” comes along and serves up a slice of digital destruction that would make even the most seasoned cybercriminals say, “Well, that’s just rude!”

Key Points:

  • Over 600,000 routers were attacked and rendered inoperable.
  • The attack, named “Pumpkin Eclipse,” happened over a 72-hour period in late October 2023.
  • Two specific models from ActionTec, T3200 and T3260, were targeted.
  • The malware used in the attack was Chalubo, a remote access trojan (RAT).
  • Black Lotus Labs has not linked the attack to any known nation-state cyber actors.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here