Get the latest tech news

Thousands of hacked TP-Link routers used in yearslong account takeover attacks


The botnet is being skillfully used to launch “highly evasive” password-spraying attacks.

Hackers working on behalf of the Chinese government are using a botnet of thousands of routers, cameras, and other Internet-connected devices to perform highly evasive password spray attacks against users of Microsoft’s Azure cloud service, the company warned Thursday. “Any threat actor using the CovertNetwork-1658 infrastructure could conduct password spraying campaigns at a larger scale and greatly increase the likelihood of successful credential compromise and initial access to multiple organizations in a short amount of time,” Microsoft officials wrote. Dan Goodin is Senior Security Editor at Ars Technica, where he oversees coverage of malware, computer espionage, botnets, hardware hacking, encryption, and passwords.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of years

years

Photo of Thousands

Thousands

Photo of Link routers

Link routers

Related news:

News photo

Thousands go to fake AI-invented Dublin Halloween parade

News photo

Notepad++ is 21 years old

News photo

An AI-generated ad left thousands of Dubliners waiting for a Halloween parade that never came