Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Were The Brits Behind Bloomberg’s Russian-US Leaks?

Bloomberg shared alleged call transcripts between Trump envoy Steve Witkoff and top Putin aides about discussions on the Ukrainian peace process.

Flipping the Script: When Democrats Project Their Own Instability 

Alexandria Ocasio-Cortez, the most erratic, inconsistent, and emotionally incontinent political figure in recent memory, isn’t tweeting from Mar-a-Lago.

This is Your Brain on Plastic, a Literature Review

Microplastics in the air, land and sea migrate into every organ where they burrow and from which they cannot feasibly be eliminated or degraded.

Irresolute Resolutions

"We need a government that lives within its means, focused on debt reduction, with strict limits on spending and baseline budgeting."

The Compassion Con: When Kindness Becomes a Weapon

Compassion has been redefined. It no longer asks anything of the giver. It now demands compliance from everyone else.

Suspect in DC Shooting Worked With US Government Entities in Afghanistan, Including CIA: Ratcliffe

An Afghan national charged with shooting two WV Guard members near the White House had previously worked with several U.S. agencies, including the CIA.

FBI Is ‘Following the Money’ to Map Out Entire Antifa Network: Patel

"The FBI’s intelligence on Antifa and its finances has improved after the group was labeled domestic terror, says director Kash Patel."

Elon Musk’s Music City Loop in Nashville May Expand to Tourist Area, Double in Stops

“Nashville’s Music City Loop may double its planned stops, adding a direct route from BNA airport to Honky Tonk Row for easier travel.”

Virginia Brothers Arrested for Alleged Plot to Kill ICE Officers

Two U.S. citizens were arrested for allegedly planning attacks against police officers and ICE agents DHS said in a Nov. 26 statement.

USCIS Stops Processing All Afghan Immigration Requests After DC National Guard Shooting

USCIS has stopped processing all immigration requests relating to Afghan nationals indefinitely pending further review of security and vetting protocols,

Trump Calls for Reexamination of Afghan Immigrants After 2 National Guardsmen Shot

President Trump on Nov. 26 called for a reevaluation of every immigrant from Afghanistan who entered the US during the Biden administration

Bessent Says Americans to See ‘Substantial Refunds’ Next Year, No Risk of Recession

Treasury Secretary Scott Bessent said the recent shutdown won’t trigger a recession and that Americans can expect substantial tax refunds next year.

5 Takeaways From Trump’s Meeting With Mamdani

President Donald Trump welcomed newly elected New York City Mayor Zohran Mamdani to the White House on Nov. 21 to discuss plans for the city.
spot_img

Related Articles