Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

Itโ€™s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victimsโ€™ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functionsโ€”โ€œeavesdroppingโ€ or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or โ€œend-of-lifeโ€ hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesdayโ€™s blog post described โ€œa development in UNC3886โ€™s tactics, techniques and procedures,โ€ and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, โ€œas it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.โ€

Mandiant described UNC3886 as โ€œhighly adept.โ€ The hacker groupโ€™s modus operandi is to acquire โ€œlegitimate credentialsโ€ and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with โ€œzero-day exploits,โ€ cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

Byย Dave Malyon

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

WNBAโ€™s Sophie Cunningham Defends Caitlin Clark

Sophie Cunningham did the right thing in standing up for Caitlin Clark. She grew her fan base simply by doing the right thing.

Beijing and Moscow Double Down on Propping Up Tehran, Threaten to Give It Nukes

As anyone who understands how these things unfold could...

The Looming Threat To Our Homeland

After success of โ€œOperation Midnight Hammer,โ€ where U.S. military bombed Iranian nuclear facilities, the threat to America has never been greater.

Trumpโ€™s Bold Strike on Iran: A Necessary Move for Global Securityย 

Trumpโ€™s airstrikes on Iranโ€™s nuclear facilities have been hailed as a courageous and necessary action to safeguard American interests and global stability.

Groundhog Day came late this year to the Land of Smiles.

itโ€™s the same rigmarole, on whatever pretext, the army commandeers the Thai state with vague promises to restore democracy at some unspecified future date.

Trump Reacts to New York City Choosing a Democratic Socialist Mayoral Candidate

President Donald Trump said Democrats have gone too far left, as evidenced by their choice of a New York City mayoral candidate who espouses far-left policies.

FedEx Lowers Revenue Outlook as Volume From China โ€˜Deteriorated Sharplyโ€™

In the fiscal fourth quarter, Fedex adjusted its network to match shifting demand, cutting Asia-to-America lane capacity by more than 35% in May.

5 Takeaways From Mamdaniโ€™s Upset Victory in NYCโ€™s Mayoral Democratic Primary

Zohran Mamdani, a 33-year-old self-described socialist, won the Democratic Primary contest for the 2025 New York City mayoral election.

Fed Moves to Relax Key Capital Rule for Big Banks to Support Treasury Markets

Fed Reserve adopted draft proposal to ease a key capital requirement for nationโ€™s largest banks, aimed at reducing regulatory pressure discouraging holding of low-risk assets.

Key Takeaways From Trumpโ€™s Whirlwind NATO Summit

Trump wrapped up 24-hour visit to the Netherlands for the NATO summit, securing agreement to increase defense spending commitments from allies.

Trump Accuses Spain of Wanting NATO โ€˜Free Rideโ€™, Makes Trade Threat

Trump accused Spain of wanting a โ€œfree rideโ€ after it refused to agree to the 5 percent of GDP defense spending target set at the NATO summit.

Trump Arrives in Netherlands for NATO Summit, With Defense Spending High on Agenda

President Donald Trump arrived in Amsterdam on Tuesday to attend the NATO summit, which is being held in The Hague from June 24 to 25.

Major Victory for Trump Administration and the American People on Deporting Criminal Illegal Aliens to Third Countries

Supreme Court decision allows DHS to deport criminal illegal aliens who are not wanted in their home country to third countries who've agreed to accept them.
spot_img

Related Articles