Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

Contact Your Elected Officials
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Doxed Democrats Are Getting Fired Left and Left

Not a misprint because a title of “left and...

Hold Up, Feds, Without Federalism, There Is No USA

Federalism is essential to governing the U.S., yet the federal government is undermining it by bribing states to implement unnecessary federal programs.

A Widow Inspires The World

Erika Kirk moved the nation with her speech two days after her husband’s assassination, vowing to continue his mission and grow Turning Point USA.

Both Left and Right Are Making Lists

The right admired Charlie Kirk for his faith and patriotism, while the left opposed him for dismantling their positions and narratives with ease.

Redemption’s playbook: The Senior

The Senior isn’t your usual underdog tale, it’s real, it’s raw, and it flips every cliché on its head with a playbook full of grit and plenty of aftermaths.

Actor Sean Astin, Known for ‘Rudy,’ ‘Lord of the Rings,’ Elected SAG-AFTRA President

Oscar-nominated actor Sean Astin, famed for Samwise in “Lord of the Rings,” has been elected as the new president of SAG-AFTRA.

RFK Jr. Names New Members to CDC Vaccine Advisory Panel

Health Secretary Robert F. Kennedy Jr. named 5 new members to the Advisory Committee on Immunization Practices, which advises the CDC on vaccines.

Thousands Honor Charlie Kirk at DC Prayer Vigil

Thousands of people came together to remember Charlie Kirk and offer tearful tributes at the John F. Kennedy Center on Sunday.

Charlie Kirk Assassination Suspect Under ‘Special Watch’ in Custody: Sheriff’s Office

Suspected assassin of Charlie Kirk is on “special watch” in custody and held separately, the Utah Sheriff’s Office spokesperson confirmed.

Trump Signs Memo Targeting Direct-to-Consumer Pharmaceutical Advertising

President Trump signed a memo to ensure drug ads give fair, balanced, and complete information to protect and inform American consumers.

Trump Runs out of Patience With China, Sharpens His Words

President Donald Trump’s recent remarks targeting China and its allies mark a noticeable shift in tone.

Trump Signs Order Renaming Department of Defense as Department of War

President Donald Trump on Sept. 5 signed an executive order renaming the Department of Defense as the Department of War.

Trump Signs Executive Order Targeting Countries That Unlawfully Detain Americans

President Trump signed an EO on targeting the unlawful detention of American citizens around the world and to facilitate the release of hostages.
spot_img

Related Articles

Popular Categories

MAGA Business Central