Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Lifting the Veil of Radical Islam

When religion remains personal, it can coexist within pluralistic societies. When it becomes a governing mandate, conflict becomes inevitable.

Here Lies the Liberal World Order: 1945-2025

Back in 1989, renowned political scientist Francis Fukuyama got...

August delusion to January absurdity: Preseason polls aged like dead fish in the Miami sunshine

College football's August preseason poll and January championship make you wonder if it all runs on blind optimism, mysticism, and favorable schedules.

The Humor in Democrat’s Hypocrisy

In this article we thought we would offer some of the most insane takes from liberal socialist Democrats.

Gavin Newsom’s Supply Chain Califailure

Some people think Gov. Gavin Newsom is a communist or socialist. Some argue he is a far left progressive. “Time will tell.” And that time may be now!

Minnesota Gov. Tim Walz Mobilizes National Guard Amid Anti-ICE Protests

Gov. Walz mobilized state’s National Guard. Soldiers to wear yellow reflective vests so protesters can “distinguish them from other agencies,” such as ICE.

Trump Says He’s Suing JPMorgan Chase Over Alleged Debanking

President Trump said he plans to sue JPMorgan Chase, alleging the bank tried to cut off his banking access after Jan. 6, 2021.

Counter Protesters Clash With Pardoned Jan. 6 Defendant in Minneapolis

Pardoned Jan. 6 defendant Jake Lang’s attempts to hold a rally in support of federal immigration enforcement efforts in Minneapolis were drowned out by counter protesters.

Abigail Spanberger Sworn In as Virginia’s First Female Governor

Abigail Spanberger becomes Virginia's first female governor in historic inauguration

Trump Taps WeatherTech CEO for Federal Trade Commission

President Trump nominated WeatherTech CEO David MacNeil to a seat on the U.S. Federal ‍Trade Commission, according to a ‍post on the White House website.

Trump Calls for New Leadership in Iran

President Donald Trump has called for regime change in Iran in the wake of protests that have engulfed the country in recent weeks.

Trump Warns Iran Against Targeting US Bases

The Trump admin warned Iran against targeting American military bases, saying any attack on U.S. assets would be met with “very, very powerful force.”

US to Impose 10 Percent Tariff on 8 European Countries Opposing Greenland Deal

U.S. President Donald Trump announced a 10 percent tariff on eight European countries that oppose U.S. efforts to acquire Greenland.
spot_img

Related Articles