Cybersecurity Firm Warns of New Cyber Espionage Tactic by Chinese Hackers

5Mind. The Meme Platform
The Epoch Times Header

Chinese state-backed hackers took advantage of outdated hardware and software to access routers and take over computer networks.

A Chinese hacker group is targeting routers made by a major U.S. manufacturer, taking advantage of outdated software and hardware to hijack routers and access computer networks, a cybersecurity firm warned Wednesday.

It’s a new tactic in an increasingly sophisticated cybercrime landscape, according to the firm.

Mandiant, a Google subsidiary known for outing Chinese hackers, reported in a blog post March 12 that the state-backed hacker group UNC3886 targeted routers made by Juniper Networks.

The Silicon Valley-based tech company is a main competitor to Cisco, the leader in the U.S. router market. While many Juniper products are manufactured in China and other parts of Southeast Asia, most of its higher-end products are assembled in North America.

In mid-2024, Mandiant found that attackers had deployed a program that accessed victims’ computers by disabling login mechanisms.

Once in the system, the program could carry out active backdoor functions, which directly interfered with the system, or passive backdoor functions—“eavesdropping” or gathering information.

Mandiant noted that the back doors were based on an open-source, low-maintenance program named TINYSHELL.

According to Mandiant, the vulnerability that enabled the intrusions was the use of routers running outdated or “end-of-life” hardware and software.

A New Tactic

Mandiant noted that in 2022 and 2023, it reported that hacker group UNC3886 had breached server software such as VMware ESXi, Linux vCenter servers, and Windows virtual machines.

Wednesday’s blog post described “a development in UNC3886’s tactics, techniques and procedures,” and a focus on devices that may lack security monitoring and detection solutions.

Compromising routing devices is a new espionage tactic, the report said, “as it grants the capability for a long-term, high-level access to the crucial routing infrastructure, with a potential for more disruptive actions in the future.”

Mandiant described UNC3886 as “highly adept.” The hacker group’s modus operandi is to acquire “legitimate credentials” and use them to operate undetected.

Historically, the group has targeted network devices and virtualization technologies with “zero-day exploits,” cyber attacks that take advantage of previously unknown vulnerabilities in software, hardware, or firmware before vendors have a chance to patch them.

By Dave Malyon

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Anti-MAHA Senator Bill Cassidy in Existential Primary Fight After Squashing Trump Surgeon General Nominee

President Trump pulled the plug on his nominee for surgeon general, but he’s using the setback to help secure a win he covets: the defeat Sen. Bill Cassidy.

The Proposed Trans-Caspian Pipeline Is Shaping Up To Be A Flashpoint

The strategic stakes rise as NATO edges into Russia’s southern periphery via TRIPP, while Turkiye pushes the Trans-Caspian Pipeline Russia opposes.

America’s Best Governor is Ron DeSantis

No Governor has done a better job than Ron DeSantis in Florida. His state is growing, luring people fleeing high-tax states such as New York.

EU Wages Censorship Jihad on Social Media Emojis

Unsatisfied with merely censoring words or phrases, the rulers of a culture that birthed free speech now chase control so far they even police emojis.

Don’t Miss the Jazz Renaissance Happening All Around You, Part 2

Something miraculous is happening in jazz right now, and the wider culture scarcely seems aware of it.

UnitedHealthcare Trims Prior Authorization Requirements by 30 Percent Across Services

UnitedHealthcare will cut prior authorization requirements by 30% to streamline care, reduce delays, and ease access to services for patients.

Google, Microsoft, xAI Will Allow Government to Vet New AI Models for Security Risks

Google DeepMind, Microsoft, and xAI have signed agreements with the Department of Commerce to evaluate their models for potential security risks.

Justice Department Sues Denver Over Ban on AR-15 Rifles

The DOJ is suing Denver after its mayor refused to repeal a ban on AR-15-style rifles and standard-capacity magazines just one day earlier.

Pennsylvania Sues AI Company Over Chatbot Allegedly Impersonating Licensed Physicians

Pennsylvania has filed suit against an AI company alleging that its chatbot impersonated licensed medical professionals.

CBP Says It Will Start Issuing First Refunds of Trump Tariffs on May 12

CBP said the first batch of refunds from tariffs imposed by President Trump, which the Supreme Court struck down in February, would begin on May 12.

Trump Says US Economy Is Booming Despite Iran War

President Trump touted his economic policies, from tax cuts and tariffs to deregulation, saying the US is thriving despite conflict in the Middle East.

US to Cut Troops in Germany a ‘Lot Further’ Than 5,000: Trump

President Trump said the U.S. will withdraw more troops from Germany amid disputes with Berlin over the Iran war.

Trump Highlights Senior Tax Relief, Drug Price Cuts at Florida Rally

President Trump addressed approximately 3,000 supporters at The Villages Charter School, highlighting his administration’s efforts to benefit seniors.
spot_img

Related Articles

Popular Categories

MAGA Business Central