Part of me thinks this is just the author building another wall, since now the DDOS will just attack ISP DNS servers instead, and worse yet quite a few of those compromised IoT devices are on those same ISPs networks, providing even better connectivity & potential throughput compared to congested peering.
Perhaps we should be taking a different path, instead of letting Qualcomm, Broadcom and ilk continue to build massive out of tree branches of the Linux kernel and never mainline their changes, thus preventing effective long term support for said hardware, we should seek to force them to properly mainline their code so when the vendors using their chips drop support, all these vulnerable IoT devices aren't permanently sitting there vulnerable.
Otherwise, the future is bleak for your smart toaster. Its likely gonna join a botnet sooner or later, just a matter of time ultimately.