Asus routers across the globe hit by suspected Chinese cyberattack – here’s what we know



  • Thousands of expired ASUS routers hijacked into “Operation WrtHug” cyber-espionage botnet
  • Chinese state-sponsored actors exploit multiple n-day flaws, using 100-year TLS certificates
  • Compromised routers form relay network, mostly in Taiwan and Southeast Asia

Thousands of expired ASUS routers are being hijacked and assimilated into a botnet being used as infrastructure for cyber-espionage operations, experts have warned.

Security researchers SecurityScorecard, together with Asus, discovered and reported the malicious campaign, claiming a group of Chinese state-sponsored threat actors have been leveraging multiple vulnerabilities in a number of ASUS routers to deploy a unique, self-signed certificate.


https://cdn.mos.cms.futurecdn.net/bkwuj9CWSiEuwx6rRgHJgS-970-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img