Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

When Civilian Immunity Applies to Everyone but Israel

Israeli civilians are either protected by the same law that protects every other civilian population, or the law is no longer universal in any serious sense.

Lindsey Graham’s Primary Fight Heats Up

Is Mark Lynch an optimal candidate to knock off the decadent, rabid (alleged) fruitcake who has somehow occupied Congress for 23 years?

“I’m So Sorry” (That I Got Caught!)

Tthe moment a political figure gets caught, the response is immediate. The backpedal begins, and out comes the familiar phrase, “I’m so sorry.”

Trump Exposes the Hypocrisy of Leo’s Papacy    

Pope Leo met with David Axelrod in a private audience. Axelrod, Obama's campaign architect, engineers political narratives for the America’s socialist left.

California Democrats Guilty of RICO Violation?   

In the wake of Nick Shirley’s exposure of government fraud in California, CA Democrats proposed a law making journalistic exposure of crimes a crime.

Lawmakers Press RFK Jr. on Vaccines

Health Sec. RFK, Jr. faced lawmakers both critical and supportive of actions regarding vaccines made by himself and agencies under his oversight.

Trump Says Israel, Lebanon Agree to 10-Day Ceasefire After Calls

U.S. President Trump said Israel and Lebanon have agreed to begin a 10-day ceasefire, agreeing to formally begin a ceasefire at 5 p.m. ET on Thursday.

S&P 500 Hits Record High as US Stocks Recover From Iran War Sell-Off

The S&P 500 index rallied to a fresh record high on April 15 as U.S. stocks extended their rebound from last month’s war‑driven sell-off.

Erika Kirk Skips Turning Point USA Event

Erika Kirk skipped a Turning Point USA event at the University of Georgia on April 14 after receiving “some very serious threats,” event organizers said.

Trump Says Pam Bondi is Out as His Attorney General

President Trump says Pam Bondi is out as his Attorney General. Bondi will be replaced by her deputy Todd Blanche, who will serve as acting attorney general.

Trump Signs Order Imposing 100 Percent Tariffs on Certain Imported Pharmaceutical Drugs

President Donald Trump signed executive orders on Thursday raising levies on some medications and refining calculations on steel tariffs.

Trump Says US Core Objectives in Iran Are ‘Nearing Completion’ in Primetime Address

President Trump will deliver a primetime address from the White House on April 1 to update the nation on the U.S. military operation against Iran.
spot_img

Related Articles

Popular Categories

MAGA Business Central