Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

Contact Your Elected Officials
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

CHARLIE KIRK, YOU WEREN’T PROVED WRONG

"I want to be remembered for courage for my faith,” Kirk had said in a podcast merely two months ago. May his courage spur us to be bolder in our faith.

Trump’s Proposal For NATO To Stop Buying Russian Oil & Start Tariffing China Is Unrealistic

Trump proposed on social media that NATO stop buying Russian oil and start tariffing China 50-100% as part of his plan for ending the Ukrainian Conflict.

The Choices We Make

Death and disagreement are inevitable. Love and hate are choices. We will all die. Before we do, what choices will we make?

Elon Musk Speaks at Unite the Kingdom Rally

Tommy Robinson held rally, with Elon Musk appearing virtually, calling attention to leftist politicians who allow foreign immigrants to invade England.

Doxed Democrats Are Getting Fired Left and Left

Not a misprint because a title of “left and...

ABC Suspends Jimmy Kimmel: 5 Things to Know

ABC suspended Jimmy Kimmel indefinitely over remarks about Charlie Kirk’s assassination, following an FCC warning its head would act against the network.

Judge Rules Pro-Palestinian Activist Mahmoud Khalil Should Be Deported

A U.S. judge ordered pro-Palestinian activist and Columbia graduate Mahmoud Khalil deported after finding he omitted information on his green card application.

Charlie Kirk’s Widow, Erika, Named New CEO of Turning Point USA

Turning Point USA announced it named Erika Kirk as new CEO and board chair of Turning Point USA, which late husband, Charlie Kirk, co-founded.

Shares of Intel Increase 30 Percent on $5 Billion Nvidia Investment

Shares of Intel increased by about 30 percent at the opening bell after Nvidia announced a $5 billion investment in the struggling chipmaker on Sept. 18.

Trump, Starmer Seal Record $340 Billion ‘Tech Prosperity Deal’

President Trump and British PM Keir Starmer announced a new partnership worth $340 billion in technology, nuclear power, and private equity.

Rubio Says US Visa Revocations Underway After Charlie Kirk Death Celebrations

SoS Marco Rubio said foreign nationals who made celebratory comments over Charlie Kirk’s assassination will have their U.S. visas revoked.

Trump Supports Designating Antifa a Terrorist Organization

President Trump said he would support designating the antifa movement a terrorist organization in the wake of Charlie Kirk’s assassination last week.

US Conducts Strike on Another Drug Boat From Venezuela: Trump

Three people were killed in a U.S. strike on a Venezuelan drug boat, President Donald Trump announced on Sept. 15.
spot_img

Related Articles

Popular Categories

MAGA Business Central