Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Importing chaos: The paradox of nation building

Did anyone in the State Department truly think an Islamic theocracy could be remade into a Western democracy? The idea was always laughable.

Another “Isolated” Incident

We hear it more often. Another isolated incident. Another unpredictable tragedy. But these incidents are not isolated, they're becoming the new norm.

“Thank You Dr. Fauci” Documentary is Shocking!

Angel Studios has just released a documentary on the COVID-19 pandemic and Dr. Anthony Fauci’s involvement with the virus and response to the pandemic.

Brought to You By Walmart™: The Delusional Democrat Autopsy

Democrats convened a crack team of (alleged) electoral experts to figure out what precipitated their humiliating electoral defeat last October.

Behn There, Done That

The only place where no one ever experiences this humiliation is politics, where there is no such thing as disgraceful conduct or sense of shame.

Oklahoma University Instructor on Leave After Failing Bible-Based Essay on Gender

An Oklahoma University instructor was placed on leave after failing a student's paper citing the Bible and calling belief in multiple genders “demonic.”

SBA Orders Over 4,300 Small Businesses to Produce Financial Records in Fraud Clampdown

The SBA has ordered all 8(a) program participants to submit financial records amid growing concerns that the initiative is plagued by fraud and abuse.

Injured National Guard Member Andrew Wolfe Is ‘Slowly Healing’: Gov. Morrisey

Staff Sgt. Andrew Wolfe, wounded in last week’s Washington attack, is slowly healing from his injuries, West Virginia Gov. Patrick Morrisey said.

US Border Patrol to Charge $5,000 Apprehension Fee for Illegal Border Crossers

The U.S. Border Patrol announced on Dec. 5 that it will begin charging a $5,000 apprehension fee to individuals arrested for illegally entering the country.

Trump Officials Signal Tariffs Here to Stay Regardless of Supreme Court Ruling

Trump’s top trade officials say the administration’s broad tariff program will stay in place even if the Supreme Court limits emergency economic powers.

Trump Unveils ‘America First’ National Security Strategy, Ending Global Policing Role

The White House has unveiled a new national security strategy built around President Donald Trump’s “America First” doctrine.

Trump Presides Over Peace Signing Between Democratic Republic of Congo and Rwanda

President Trump celebrated the Peace agreement between the Congo and Rwanda, signed in the newly named Donald J. Trump Institute of Peace.

Trump Orders Flags Flown at Half-Staff in Memory of Slain National Guard Member

President Donald Trump ordered flags to be flown at half-staff until sunset on Dec. 4 in memory of National Guardsman Sarah Beckstrom.
spot_img

Related Articles