Drooid Logo
Back to today’s briefing

Story perspectives

KadNap Botnet Infects 14,000 Routers, Fuels Crime

3/13/2026

50 12 Full Breakdown

1 of 1

Story summary
  • KadNap, a botnet identified by Lumen's Black Lotus Labs, has infected over 14,000 routers, mainly Asus devices, via unpatched vulnerabilities.
  • The botnet uses a custom Kademlia Distributed Hash Table protocol to conceal its command-and-control servers.
  • About 60% of infected devices are in the United States, with others in Taiwan, Hong Kong, and Europe.
  • KadNap provides a proxy service called Doppelgänger that facilitates criminal activities.