Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

How Does MAGA View Operations in Iran?

Can you really call what President Trump is doing as Commander-in-Chief in Iran as a “war” or is it a military operation?

Study: Rate of Sexual Deviancy Directly Proportionate to Pornography Usage

As it happens, it’s not just the frogs that are turning gay. It’s also, according to a new study, porn addicts.

The DROP Act Is An Unprecedented Weapon Of Financial Warfare Against Russia

If the DROP Act passes, Trump could impose sanctions on anyone buying or helping export Russian oil, with limited exceptions under 3 specific conditions.

Stop The Harmful Time Changing Ritual

Except for Arizona and Hawaii, who have year-round standard time, Americans were forced to “spring forward” and lose an hour of sleep on Sunday morning.

The calculus of impunity

Since when does New York City Mayor Zohran Mamdani get to decide what isn’t a crime? Attempting to downplay crime is not part of his job.

Lawsuit Demands Costco Pass Tariff Refund to Customers Who Paid Higher Prices

A Costco shopper filed a proposed class-action lawsuit against Costco Wholesale Corp. alleging retailer is illegally holding potential refunds for tariffs.

Shooting at Old Dominion University Being Investigated as Act of Terrorism

A shooting at Old Dominion University in Virginia is being investigated as a potential act of terrorism, according to FBI Dir. Kash Patel.

White House Disputes ABC Report Claiming Iran Wants to Launch Drones at West Coast

The White House and FBI disputed claims of an internal government alert saying Iran wants to launch drones to attack the West Coast of the US.

US Knows Location of Most Iranian Sleeper Cells Inside America, Trump Says

President Donald Trump said on March 11 that his administration knows the location of most Iranian sleeper cells in the United States.

US, Russian Delegates Meet in Florida on March 11

President Trump’s representatives held talks with a Russian delegation in Florida on March 11, U.S. special envoy to the Middle East Steve Witkoff said.

US Knows Location of Most Iranian Sleeper Cells Inside America, Trump Says

President Donald Trump said on March 11 that his administration knows the location of most Iranian sleeper cells in the United States.

Trump Appoints Erika Kirk to Air Force Academy Board

President Trump has appointed Erika Kirk, widow of the late Charlie Kirk, to serve on the Air Force Academy’s Board of Visitors, according to the White House.

Trump Says War in Iran Is ‘Very Complete,’ Far Ahead of Schedule

President Trump said that the U.S. operation against Iran is “very complete,” giving an indication that the one-week-long war is coming to an end soon.
spot_img

Related Articles

Popular Categories

MAGA Business Central