Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

The Quintessential American Pragmatist

America’s 47th president has already secured key legacy victories, each driven by a pragmatic approach, even as Ukraine peace efforts remain unresolved.

Fat Propaganda Roundup: Documenting the meatiest, juiciest cuts of “fat acceptance” propaganda from corporate and social media.

Donald Trump has turned fatphobia into official government policy, denying obese immigrants visas on the grounds that they are financial liabilities.

The Seditious Six ARE the Enemies Within

America has gotten soft thanks to a desire to appease the progressive liberals and this softening can actually lead to the downfall of a nation.

REP. JASMINE CROCKETT WINS 2025 TURKEY OF THE YEAR AWARD

“Our Ringside Politics shows annually award a ‘Turkey of the Year’ to a politician, bureaucrat, or celebrity especially deserving the distinction.”

CDC to Nuke Newborn Hepatitis B Vaccine Recommendation?

ACIP will consider the case against giving hepatitis B vaccines to newborns whose mothers are not infected, arguing the shots may be unnecessary.

Trump Administration Halts Immigration Processing From 19 Countries

The Trump administration halted immigration application processing from 19 nations, including Afghanistan and Somalia, citing security concerns.

Amazon Tests ‘Ultra-Fast’ Delivery Service in Seattle, Philadelphia

Amazon tests ‘Ultra-Fast’ delivery service in Seattle and Philadelphia, delivering groceries and essential household items in 30 minutes or less.

Trump Says His Administration is Rebuilding Dulles Airport

Trump said his administration will begin the process of reconstructing Washington Dulles International Airport in Dulles, Virginia.

Hegseth Says He Didn’t Watch 2nd Boat Strike, Backs Commander

Sec. of War Pete Hegseth watched the initial strike on a drug boat in early September, but did not see a follow-up strike on the damaged vessel.

White House Provides Summary of Trump’s Medical ‘Advanced Imaging’ Results

Press Sec. Karoline Leavitt read a summary of Trump’s “advanced imaging” results from his visit to Walter Reed National Military Medical Center in October.

Trump Says He Will Pardon Ex-Honduran President Convicted by Jury in US Drug Case

President Trump grants a full pardon to ex-Honduran President Juan Orlando Hernandez, who is serving 45 years in the U.S. for drug and firearms convictions.

Trump Says He Is Canceling All Biden Executive Orders Signed With Autopen

President Trump announced he is revoking executive orders and other presidential actions previously signed by former President Joe Biden using an autopen.

Trump Says US May Cut Income Tax Completely in Next Couple of Years Due to Tariff Income

Trump said the U.S. could end income taxes within a few years, citing tariff revenue as the reason such a shift might be possible.
spot_img

Related Articles