Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

DNI Tulsi Gabbard is Bringing the Heat

DNI Tulsi Gabbard brought the heat to Fulton County Georgia to oversee the collection of physical voting data from the 2020 General Election.

Anti-Trump Propaganda is In High Gear!

With all the news these days, it is difficult to keep up. It becomes even more difficult when people intentionally make up stories to push an agenda.

TDS in American Nurses

Is stage four Trump Derangement Syndrome being seen in liberal nurses like Alex Pretti, Lexi Lawler, and Malinda Cook?

Dem’s Fighting Words!

Politicians can be some of the most two-faced creatures...

The Rocks and the Sea

The inexorable action of the tide works relentlessly against...

Judge Blocks Parts of Trump Order on Verifying Citizenship for Voter Registration

A federal judge struck down key parts of Trump’s EO that tightened citizen verification requirements for voter registration, ruling he exceeded his authority.

Gov. Walz, Minnesota AG Will Give Sworn Testimony About Fraud to Oversight Committee

Two top Minnesota officials, Walz and Ellison, have confirmed they will testify publicly about their state’s alleged fraud scandals next month.

Hochul Proposes Ban on Local Police Agreements With ICE Under 287(g) Program

Hochul proposed the Local Cops, Local Crimes Act to void New York’s 287(g) agreements and bar local jails and police from aiding civil immigration enforcement.

Judge Rules Out Death Penalty in Federal Case Against Luigi Mangione

A federal judge ruled that prosecutors may not seek the death penalty against Mangione, accused of killing UnitedHealthcare CEO Brian Thompson.

What to Know About Kevin Warsh, Trump’s Nominee for Fed Chair

President Donald Trump selected former Federal Reserve Governor Kevin Warsh as the next head of the U.S. central bank.

Trump Nominates Colin McDonald as Head of New Fraud Division at Justice Department

President Trump announced Colin McDonald as head for the new national fraud enforcement division of the DOJ in a post on Truth Social.

Trump Touts Upcoming Launch of ‘Trump Accounts’

The Treasury Dept. will host a summit marking the launch of Trump Accounts, new child savings accounts created by the One Big Beautiful Bill Act.

Trump Signals Flexibility on South Korea Tariffs

President Trump said the U.S. will negotiate a solution with South Korea after announcing higher tariffs on the ally’s exports a day earlier.
spot_img

Related Articles