Fortinet researchers identified a campaign exploiting known issues to install ClingSTUN on routers, cameras and other internet-connected devices.
The activity first targeted Hytec routers, then expanded to products from EnGenius, D-Link, TP-Link, AVTECH, Realtek and Linear.
Fortinet says the malware can persist after a reboot and allow remote use of an infected device.
The researchers have not reported an infection co…