Uptycs threat research team discovered a new botnet, tracked as Simps Botnet, attributed to Keksec group, which is focused on DDOS activities. Simps binary uses Mirai and Gafgyt modules for DDOS functionality. The author behind this Botnet has a Youtube channel and Discord server for the usage and demonstration of the Botnet. The Simps payload was delivered by exploiting multiple Remote Code Execution vulnerabilities in vulnerable IOT devices. The binary also connects to the C2 23.95.80[.]200 (see figure 3)”]
Source: https://securityaffairs.co/wordpress/118050/malware/simps-botnet.html