Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

24/7 LGBTQ+ TV Station Applies For License Two Weeks After Hungary’s ‘Far-Right’ Unseated

After Viktor Orbán’s defeat to a more EU-friendly rival, the European Court of Justice struck down Hungary’s Child Protection Law.

The Dirty Dozen: Will the Destroyer of Society Please Stand Up

Everyone seems to be searching for the one thing that is destroying society, as if there were a single cause that could be identified, isolated, and addressed.

Blue-White’s economic engine

Penn State’s Blue-White game shows how a university, its town, and business leaders turn a simple spring football practice into an economic engine.

Will Obama and Clinton Face Justice?    

There is interesting, even earth shaking, news currently being reported on, and this news can easily be seen in these three related stories.

DOJ Quietly Retracts John Brennan Subpoenas, Offers No Explanation

Greasy Deep State eel in a human skinsuit, John Brennan, may have slipped the proverbial noose once again.

US Allows Venezuela to Fund Maduro’s Defense After Court Challenge

The US will ease sanctions on Venezuela to allow its regime to pay legal fees for former Venezuelan leader Nicolás Maduro in a U.S. drug trafficking case.

Acting AG: Suspect Likely Targeted Trump, Admin Officials in Correspondents’ Dinner Shooting

President Trump and members of his administration were the likely targets of a suspect who fired on a Secret Service agent at the WHCA ​dinner in Washington.

Suspect Facing Multiple Charges After Shooting at WH Correspondents’ Dinner: DOJ

The DOJ said the suspect behind the incident at the WHCA Dinner faced at least two charges and would be arraigned after the weekend.

Secret Service Agent Shot at White House Correspondents’ Dinner: Trump

A Secret Service agent was shot but survived at the White House Correspondents’ Dinner, President Trump said during a press briefing after the incident.

Treasury Sanctions Iran-Linked Chinese Oil Refinery, 40 Vessels

The Treasury Department sanctioned a Chinese refinery and 40 shipping firms and vessels found to be providing a lifeline to the Iranian oil economy.

Trump Admin Begins Process to Downgrade Marijuana Classification

The Trump administration announced plans to reclassify approved marijuana products as a less dangerous drug under federal law.

Gas Prices Will Return to Low Levels After Iran Conflict Ends, Bessent Says

Treasury Sec. Scott Bessent said relatively high gas prices will not last long but any change is contingent on when the US and Iran cease hostilities.

Trump Participates in Historic Bible-Reading Marathon to Celebrate Nation’s 250th Anniversary 

President Trump read passages from the Bible on April 21 from the Oval Office at the White House as part of the “America Reads the Bible” celebration.
spot_img

Related Articles

Popular Categories

MAGA Business Central