Get the latest tech news

FBI Alert: Russian Hackers Target Ubiquiti Routers for Data, Botnet Creation


Follow us on Twitter (X) @Hackread - Facebook @ /Hackread

Russian hackers, part of Russia’s Main Intelligence Directorate of the General Staff, are using compromised Ubiquiti EdgeRouters to build extensive botnets, steal credentials, collect NTLMv2 digests, and proxy malicious traffic. As per the advisory(PDF), Russia-backed APT28 actors (aka Fancy Bear) have been using compromised Ubiquiti EdgeRouters since 2022 to carry out covert cyber operations against various industries, including Aerospace & Defense, Education, and Energy & Utilities. The FBI recommends remediating compromised EdgeRouters by performing a hardware factory reset, upgrading to the latest firmware, changing default usernames and passwords, and implementing strategic firewall rules on WAN-side interfaces.

Get the Android app

Or read this on r/technology

Read more on:

Photo of FBI

FBI

Photo of Russian

Russian

Photo of data

data

Related news:

News photo

Hacking group claims Epic Games breach

News photo

Hackers backed by Russia and China are infecting SOHO routers like yours, FBI warns

News photo

Pharmaceutical giant Cencora says data was stolen in a cyberattack