Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

2026: No charge required

Republicans are famous for their ability to snatch defeat from the jaws of victory as those acquainted with history know all too well.

What if Somali Fraud is About More than Votes?

What if Somali public aid abuse is more than vote-buying? Could it be a money-laundering scheme with Democrats and mainstream media skimming profits?

Bioterror Roundup: ‘Vax Pac’

Democrat dark money machine ActBlue opened spigot, urging boosted liberals to “debunk disinformation” by donating to Democrats amid vaccine debates.

The CIA Is Manipulating Trump Against Putin

Russia’s military intelligence shared drone route data with a US attaché, saying it proves the target was Putin’s presidential residence in Novgorod.

Shirley’s Somali Fraud News Story Explodes!

Several days ago we reported on independent journalist Nick Shirley, a 23 year old man who created a viral video exposing the fraud in Minnesota.

Somali Americans Face Audits for Potential Immigration Fraud

Gaining citizenship via fraud is grounds for denaturalization, said a federal official amid investigations into scams in Minnesota.

FBI Thwarts ISIS-Inspired New Year’s Eve Terror Plot in North Carolina

The FBI said it foiled an ISIS-inspired New Year’s Eve terror attack in North Carolina. Suspect Christian Sturdivant, 18, was arrested and charged.

New Year’s Gas Prices 23 Cents Cheaper Than a Year Ago in US

American drivers began the new year with further relief at the gas pump, as national average gasoline prices continued to edge lower.

SBA Suspends 6,900 Minnesota Borrowers Over Potential COVID-19 Loan Fraud

The SBA has suspended 6,900 Minnesota borrowers amid suspected fraudulent activity in the state’s pandemic-era loan programs, SBA Administrator Kelly Loeffler said.

Trump Vows to Intervene if Iran Kills Protestors

President Donald Trump on Jan. 2 vowed to come to the aid of protesters in Iran if they are killed by the regime in Tehran.

Trump Says Minnesota Fraud Investigation Only the Start, Suggests Other States Next

President Trump said his administration is going to continue to target alleged social services fraud in Minnesota, but said that it’s worse in other states.

Homeland Security Looks to Fast-Track Demolition of Dilapidated Buildings in DC

DHS is seeking an emergency demolition of historic buildings in the nation’s capital. “This is about safety,“ DHS Asst. Sec. Tricia McLaughlin said.

Trump Hosts Netanyahu at Mar-a-Lago for Bilateral Discussions

President Trump welcomed Israeli PM Netanyahu to Mar-a-Lago in Palm Beach, Florida, on Dec. 29 to discuss Gaza, Iran, Syria, and other matters.
spot_img

Related Articles

Popular Categories

MAGA Business Central