Security experts warn that compromised household devices, from streaming boxes to vehicle systems, are increasingly being exploited in large-scale denial of service attacks, with weak security as the common vulnerability.
A connected phone, laptop or smart device can be drawn into a distributed denial of service attack without the owner realising it, security specialists say. In such attacks, a website or online service is flooded with traffic from many machines at once until its systems slow down or fail altogether. Jurnalul reported that the process usually begins when malware is installed on the device, giving criminals remote control over phones, laptops, tablets or other internet-connected equipment.
Once a device is compromised, it can be folded into a botnet, a network of infected machines that attackers coordinate to send huge numbers of requests to a target. The FBI warned in June 2025 that criminals have been exploiting internet-connected home devices, including streaming boxes, digital projectors, vehicle infotainment systems and digital photo frames, to support the BADBOX 2.0 botnet and related residential proxy services. Microsoft has also described botnets such as Mozi as using weak passwords and unpatched vulnerabilities in internet of things devices to carry out denial of service attacks and other malicious activity.
The pattern is not new. Check Point has said the Mirai botnet, which emerged in 2016, was built around poorly secured IoT devices and used for large-scale DDoS attacks. Cloudflare separately documented the WireX botnet, which in 2017 relied mainly on Android devices running malicious apps to generate attack traffic. Taken together, these cases show how ordinary consumer hardware can be turned into attack infrastructure when basic security controls are missing.
To reduce the risk, the National Cyber Security Directorate in Romania recommends keeping antivirus software updated, enabling a firewall, using strong passwords and replacing default ones immediately. It also advises installing applications only from official sources and checking whether requested permissions match the app’s stated purpose. Regular operating system and app updates are also important because they often close security holes that attackers can exploit. The directorate says users who suspect an incident can seek help through the 1911 hotline or the PNRISC platform.
Disclaimer: This content is intended for informational purposes only. Readers are advised to exercise their own judgement, conduct due diligence, or consult a qualified expert before acting on any information provided.





