Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Ukraine’s Corruption Scandal Might Pave The Way For Peace If It Takes Yermak Down

“This week’s events prompt re-evaluation as ruling party members demand the resignation of Chief of Staff Andrey Yermak, alleging he knew about the racket.”

‘Why Do You Hate Psychiatry?’

“Why do you hate psychiatry?” read the subject line, a reference to my many writings littering the internet deriding the profession and its apologists, like this gentleman.

Tucker Carlson Exposes Trump Assassination Oddities

The FBI told us Thomas Crooks tried to kill Trump last summer but somehow had no online footprint. We have his posts. Why did the FBI lie?

Trump’s Outreach to Mamdani Could Benefit New York—If Done Right 

Trump meeting with NY Mayor-elect Mamdani could shape U.S. politics, offering potential benefits if both leaders act pragmatically over ideology.

Poland’s Railroad Sabotage Incident Is Highly Suspicious

Poland’s railroad sabotage incident might therefore be a false flag for achieving other goals, particularly the worsening of Russian-US tensions.

US Economy Created 119,000 New Jobs in September, Topping Market Estimates

The Bureau of Labor Statistics’ delayed Sept. employment report showed the U.S added more jobs than expected, suggesting labor market could be rebounding.

Federal Judge to Move Forward With Criminal Contempt Inquiry Over Deportation Flights

A federal judge, James Boasberg, plans a criminal contempt inquiry into why officials ignored his order stopping the deportation of migrants to El Salvador.

30,000 Missing Illegal Immigrant Children Located: Tom Homan

Under this administration there is ‘less fentanyl killing Americans,...

Studies Back Government on Childhood Gender Dysphoria

Peer reviews praised the federal report rejecting medical interventions for gender-dysphoric youth as “scientifically sound” and “compelling.”

Trump Nominates 20-Year ATF Veteran to Be New Director

President Trump has nominated a 20-year veteran of the Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF), Robert Cekada, to be its new director.

Trump Touts $270 Billion in Business Deals With Saudi Arabia at Investment Forum

President Trump touted $270 billion in new business deals signed between the U.S. and Saudi Arabia in energy, artificial intelligence, finance, and aerospace.

US Ambassador Says Ontario’s Anti-US Tariff Ad Was Unprecedented, Restarting Trade Talks Won’t Be Easy

“Ambassador Pete Hoekstra said reviving U.S.-Canada trade talks will be difficult after Washington halted them following Ontario’s anti-tariff ad.”

Trump Promises Saudi Crown Prince to Help Resolve Years-Long Conflict in Sudan

President Trump told an audience with Saudi Crown Prince Mohammed bin Salman the U.S. is working to help end Sudan’s internal conflicts.
spot_img

Related Articles