FBI warns Russians hacked hundreds of thousands of routers

Recommended Videos

Lil devils x_v1legacy

More Lego Goats Please!
May 17, 2011
2,728
0
0
FBI warns Russians hacked hundreds of thousands of routers
Reuters) - The FBI warned on Friday that Russian computer hackers had compromised hundreds of thousands of home and office routers and could collect user information or shut down network traffic.
The U.S. law enforcement agency urged the owners of many brands of routers to turn them off and on again and download updates from the manufacturer to protect themselves.

The warning followed a court order Wednesday that allowed the FBI to seize a website that the hackers planned to use to give instructions to the routers. Though that cut off malicious communications, it still left the routers infected, and Friday?s warning was aimed at cleaning up those machines.

Infections were detected in more than 50 countries, though the primary target for further actions was probably Ukraine, the site of many recent infections and a longtime cyberwarfare battleground.

In obtaining the court order, the Justice Department said the hackers involved were in a group called Sofacy that answered to the Russian government.

Sofacy, also known as APT28 and Fancy Bear, has been blamed for many of the most dramatic Russian hacks, including that of the Democratic National Committee during the 2016 U.S. presidential campaign.

Earlier, Cisco Systems Inc said the hacking campaign targeted devices from Belkin International?s Linksys, MikroTik, Netgear Inc, TP-Link and QNAP.

An FBI official told Reuters that the kinds of devices known to be affected by the hack were purchased by users at electronic stores or online.

However, the FBI was not ruling out the possibility that routers provided to customers by internet service companies could also be affected, the official added.
?The size and scope of the infrastructure by VPNFilter malware is significant,? the FBI said, adding that it is capable of rendering peoples? routers ?inoperable.?

It said the malware is hard to detect, due to encryption and other tactics.

The FBI urged people to reboot their devices to temporarily disrupt the malware and help identify infected devices.

People should also consider disabling remote-management settings, changing passwords and upgrading to the latest firmware.
https://www.reuters.com/article/us-usa-cyber-routers/fbi-warns-russians-hacked-hundreds-of-thousands-of-routers-idUSKCN1IQ2DY

TLDR: Make sure your hardware and software is updated and unless you absolutely need your remote desktop disable your remote settings. People should be doing this stuff anyhow.
 

Lil devils x_v1legacy

More Lego Goats Please!
May 17, 2011
2,728
0
0
Gauche said:
An FBI official told Reuters that the kinds of devices known to be affected by the hack were purchased by users at electronic stores or online.
What an uninformative article
you missed this additonal bit of important information:
However, the FBI was not ruling out the possibility that routers provided to customers by internet service companies could also be affected, the official added.
Kidding aside, they at least gave us this list:
Earlier, Cisco Systems Inc said the hacking campaign targeted devices from Belkin International?s Linksys, MikroTik, Netgear Inc, TP-Link and QNAP.
 

Zeraki

WHAT AM I FIGHTING FOOOOOOOOR!?
Legacy
Feb 9, 2009
1,615
45
53
New Jersey
Country
United States
Gender
Male
Frezzato said:
Interesting. This past week my router has been going bonkers. Hmm.
My router was acting all screwy a couple days ago... but that's not really all that unusual with Comcast in my area.