Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Albin Sadar Cartoons

Over the past twelve years, Albin Sadar has drawn cartoons for conservative websites like American Thinker, American Greatness, and now for The Thinking Conservative.

Hanoi Jane Typifies Hollywood Idiocy

After the United States and Israel launched military operations in Iran, wacky Jane Fonda decided to insert herself into the news again.

DHS Sec. Drops Jarring Intel on Intra-Agency Spies, U.S. Scientists Colluding With Wuhan Pre-COVID

As if she were discussing a picnic spread, DHS Secretary Krisi Noem nonchalantly spills the beans to Patrick Bet-David, February X, 2026:

The US Military Campaign Against Iran Is Part Of Trump’s Grand Strategy Against China

Trump claimed that the US’ military campaign against Iran is to “defend the American people”, but few observers realize that it’s actually all about China.

Once the Obvious Is Exposed,Why Doesn’t It Sink In?

Why do everyday Americans listen to the twisted "logic" of the Woke mindset and not say, "What?! That doesn't make sense?!"

Democrats Split on Trump’s Iran Strikes as War Powers Debate Looms

Congressional leaders of the Democratic Party have mostly been quick to decry President Donald Trump and Israel’s joint operation in Iran.

‘This is Not Iraq’: Hegseth Says Goal of Iran Operation is Not Nation Building

Sec. Hegseth said the military campaign against Iran is designed to achieve specific military objectives—not to engage in nation-building.

Oil Prices Set to Spike as Iran Declares Strait of Hormuz ‘Effectively Closed’

Crude oil and gasoline prices are expected to spike when trading resumes Monday as Strait of Hormuz tanker traffic slows to a trickle.

Trump Orders Federal Agencies to Cease All Use of Anthropic Tech

War Secretary Pete Hegseth directed the Department of War...

President Donald Trump Gives Update on Operation Epic Fury

Over the past 36 hours, the US and its partners have launched Operation Epic Fury, one of the largest, most complex, most overwhelming military offensives the world has ever seen.

Trump Announces US Military Sank 9 Iranian Navy Ships

President Trump said that the U.S. military has sunk nine Iranian naval ships and “largely destroyed” the regime’s naval headquarters.

Trump Agrees to Talk to New Iranian Leadership

President Donald Trump has agreed to open discussions with Iran’s newly established leadership following the death of Supreme Leader Ali Khamenei.

Trump’s Full Statement on Iran

President Trump announced that the United States had begun “major combat operations” in Iran with the goal of eliminating threats from the Iranian regime.
spot_img

Related Articles

Popular Categories

MAGA Business Central