Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

The Clintons Need Prosecutions, Not Hearings!

Americans are tired of Congressional hearings that produce no criminal prosecutions.
00:07:48

Mr. Monsanto Goes to Washington: The Casey Means Confirmation Hearing

The recent Senate Health Committee hearing for Surgeon General nominee Casey Means went as predicted.

The Planned “NATO Bank” Is Expected To Finance Europe’s Impending Arms Race With Russia

RT drew attention in late January to a report by Izvestia about the West’s alleged plans to launch a “Defense, Security, and Resilience Bank” (DSRB) by 2027.

The Iran War Allows Congress to Make Itself Relevant Again

Congress has made itself irrelevant by submitting to presidential power. The Iran War gives Congress the ability to refuse to spend on undeclared wars.

Albin Sadar Cartoons

Over the past twelve years, Albin Sadar has drawn cartoons for conservative websites like American Thinker, American Greatness, and now for The Thinking Conservative.

Trump Announces He’s Replacing Noem With Oklahoma Senator to Head Homeland Security

Kristi Noem, the president said, would be moving to a special envoy position and will be replaced by Sen. Markwayne Mullin.

Trump Replacing Noem With Oklahoma Senator to Head Homeland Security

President Donald Trump on March 5 announced that he is replacing Homeland Security Secretary Kristi Noem with Sen. Markwayne Mullin.

Small Business Administration Set to Remove 628 Companies From Development Program

SBA is removing 628 companies from its 8(a) Business Development Program after they refused to produce, for review, three years of financial documents.

CDC Urges Precautions in 31 Countries Over Poliovirus

Poliovirus has been spreading in dozens of countries, the U.S. Centers for Disease Control and Prevention said in a March 3 travel warning.

Trump Meets Germany’s Merz at White House, Says Berlin Aligned With US on Iran

German Chancellor Merz met with President Trump at the White House, with the Trump saying Berlin is aligned with Washington on the Iran War.

President Donald Trump Gives Update on Operation Epic Fury

Over the past 36 hours, the US and its partners have launched Operation Epic Fury, one of the largest, most complex, most overwhelming military offensives the world has ever seen.

Trump Announces US Military Sank 9 Iranian Navy Ships

President Trump said that the U.S. military has sunk nine Iranian naval ships and “largely destroyed” the regime’s naval headquarters.

Trump Agrees to Talk to New Iranian Leadership

President Donald Trump has agreed to open discussions with Iran’s newly established leadership following the death of Supreme Leader Ali Khamenei.
spot_img

Related Articles

Popular Categories

MAGA Business Central