Telnet Is Still Open: Why the IoT Botnet Notices Keep Describing the Same Reachable Population When a national CERT publishes a notice about active botnet families, the intrusion methods listed are usually unremarkable. The August 2026 notice from China's National Network and Information Security Notification Centre named five cross-border families — Mirai, CondiBot, Gafgyt, TBot and SoftBot — and described initial access through Telnet and SSH brute force against unchanged factory credentia...