Thousands of consumer routers hacked by Russia's military
End-of-life routers in homes and small offices hacked in 120 countries.
The Russian military is once again hacking home and small office routers in widespread operations that send unwitting users to sites that harvest passwords and credential tokens for use in espionage campaigns, researchers said Tuesday. An estimated 18,000 to 40,000 consumer routers, mostly those made by MikroTik and TP-Link, located in 120 countries, were wrangled into infrastructure belonging to APT28, an advanced threat group that’s part of Russia’s military intelligence agency known as the GRU, researchers from Lumen Technologies' Black Lotus Labs said. The threat group has operated for at least two decades and is behind dozens of high-profile hacks targeting governments worldwide. APT28 is also tracked under names including Pawn Storm, Sofacy Group, Sednit, Tsar Team, Forest Blizzard, and STRONTIUM. Technical sophistication, tried-and-true techniques A small number of routers were used as proxies to connect to a much larger number of other routers belonging to foreign ministries, law enforcement, and government agencies that APT28 wanted to spy on. The group then used its control of routers to change DNS lookups for select websites, including, Microsoft said, domains for the company’s 365 service.Read full article Comments
Related tags
Companies and people
Story threads
Continue with this story
Follow the same topic through connected articles, entity pages, and active story threads.
Anthropic limits access to Mythos, its new cybersecurity AI model
A select group of customers is testing the Claude Mythos Preview.
Valve brings native Steam Link app to Apple's Vision Pro
New app can replace third-party options that were jankier to use.
Apple and Lenovo have the least repairable laptops, analysis finds
The MacBook Neo is a step in the right direction, though.
What the heck is wrong with our AI overlords?
New profile of Sam Altman shines a light on a whole industry.
Bluesky users are mastering the fine art of blaming everything on "vibe coding"
Use of AI coding tools has become a convenient boogeyman for any tech issues.
SCOTUS overturns 5th Circuit ruling that told ISP to kick pirates off Internet
Supreme Court's precedent-setting Cox ruling helps Grande beat music piracy claims.
Ad slot
Article inline monetization block
A reserved partner slot for relevant tools, services, and contextual editorial integrations.
Related articles
More stories that share tags, source, or category context.
Anthropic limits access to Mythos, its new cybersecurity AI model
A select group of customers is testing the Claude Mythos Preview.
Valve brings native Steam Link app to Apple's Vision Pro
New app can replace third-party options that were jankier to use.
Apple and Lenovo have the least repairable laptops, analysis finds
The MacBook Neo is a step in the right direction, though.
What the heck is wrong with our AI overlords?
New profile of Sam Altman shines a light on a whole industry.
More from Ars Technica
Fresh reporting and follow-up coverage from the same newsroom.
Anthropic limits access to Mythos, its new cybersecurity AI model
A select group of customers is testing the Claude Mythos Preview.
Valve brings native Steam Link app to Apple's Vision Pro
New app can replace third-party options that were jankier to use.
Apple and Lenovo have the least repairable laptops, analysis finds
The MacBook Neo is a step in the right direction, though.
What the heck is wrong with our AI overlords?
New profile of Sam Altman shines a light on a whole industry.