Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

Contact Your Elected Officials
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

Itโ€™s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victimsโ€™ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functionsโ€”โ€œeavesdroppingโ€ or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or โ€œend-of-lifeโ€ hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesdayโ€™s blog post described โ€œa development in UNC3886โ€™s tactics, techniques and procedures,โ€ and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, โ€œas it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.โ€

Mandiant described UNC3886 as โ€œhighly adept.โ€ The hacker groupโ€™s modus operandi is to acquire โ€œlegitimate credentialsโ€ and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with โ€œzero-day exploits,โ€ cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

Byย Dave Malyon

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

AI: A Double-Edged Sword?

AI produces innovation, revolutionizing industries from education to entertainment, yet AI tools also cause a gradual decline in human cognitive skills.

Why is the Epstein Victim List Longer than the Client List?

Bondi said her responsibility is to protect identities of underage girls sexually abused by Epstein, but a good number of victims have come forward.

Stirring the gravy

โ€œYou might be a Pennsylvanian-Italian if you claim Italian ancestry and participated in San Marziale festivities at Holy Angels Church in Kulpmont, PA.

Flood of Lies

The tragedy still unfolding after the historic Texas floods should be cause for unity, but Democrats weaponize the catastrophe for themselves.

Now Lawyers Are Looking for the Epstein List, Too!

So it turns out that when FBI Director Kash...

A Year After Trump Rally Shooting, Town Still Seeks Healing, Answers

A western PA community has rallied around the family of Corey Comperatore who was fatally shot when a gunman opened fire at a Trump rally.

5 States Discussing Plans to Build Prisons Like โ€˜Alligator Alcatrazโ€™: Noem

Homeland Security Sec Kristi Noem said five Republican-led states were discussing plans to build detention sites similar to Floridaโ€™s โ€œAlligator Alcatraz.โ€

Wyoming Opens Dual Mine: Coal for Power, Rare Earths for Everything Else

Brook Mine will be the first new coal mine to open in Wyoming in 50 years and first critical mineral and rare earth mine to open in the US in 70 years.

Los Angeles Mayor Signs Order Reaffirming Sanctuary City Policy, Proposes Cash Aid to Illegal Immigrants

LA Mayor Karen Bass has issued an executive directive reaffirming the cityโ€™s self-proclaimed sanctuary status in response to ongoing ICE operations.

EU Wonโ€™t Retaliate to Trumpโ€™s 30 Percent Tariff, Countermeasures on Hold Until August

EC President Ursula von der Leyen said EU will extend suspension on countermeasures to U.S. tariffs until next month while trade negotiations continue.

Trump Announces 30 Percent Tariff on EU, Mexico

President Donald Trump has announced a 30 percent tariff on imports from the European Union and Mexico, to go into effect on Aug. 1, 2025.

Tariff Windfall Drives Surprise $27 Billion US Budget Surplus in June

New data from Treasury Dept show that surging tariff revenues in June helped U.S. government post an unexpected budget surplus of $27 billion.

State Department Says Reorganization Plan to Move Ahead Quickly After Supreme Court Ruling

State Dept to reorganize plans following Supreme Court's allowing Trump admin to proceed with layoffs of fed workers and overhaul of federal agencies.
spot_img

Related Articles