Breaking News

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger INNO3D TOWER WORKSTATION AWS-511Z-R1 Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device Nikon releases the Z5IIC full-frame mirrorless camera Announcing the New ASUS Googlebook 14

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed

Search form

FBI Says Reboot Your Router to Stop Malware Infecting 500k Devices

FBI Says Reboot Your Router to Stop Malware Infecting 500k Devices

Enterprise & IT May 25,2018 0

The FBI is advising users of small office and home office routers to reboot them as soon as possible to counter Russian-engineered malware that has infected hundreds of thousands devices.

According to the FBI, "foreign cyber actors" have compromised hundreds of thousands of home and office routers and other networked devices worldwide. The actors used VPNFilter malware to target small office and home office routers. The malware is able to perform multiple functions, including possible information collection, device exploitation, and blocking network traffic.

The VPNFilter malware targets routers produced by several manufacturers and network-attached storage devices by at least one manufacturer. The initial infection vector for this malware is currently unknown.

VPNFilter is able to render small office and home office routers inoperable. The malware can potentially also collect information passing through the router. Detection and analysis of the malware's network activity is complicated by its use of encryption and misattributable networks.

The FBI recommends any owner of small office and home office routers reboot the devices to temporarily disrupt the malware and aid the potential identification of infected devices. Owners are advised to consider disabling remote management settings on devices and secure with strong passwords and encryption when enabled. Network devices should be upgraded to the latest available versions of firmware.

The FBI did not explain why the VPNFilter can't survive a reboot - why the malware is wiped clean as soon as a device is restarted.

The US Department of Homeland Security has also issued a statement advising that "all SOHO router owners power cycle (reboot) their devices to temporarily disrupt the malware."

The FBI said it is working with the non-profit Shadow Foundation to disseminate the IP addresses of infected devices to ISPs and foreign authorities to notify end users.

The VPNFilter malware was discovered by Cisco's Talos researchers, who claim that it is likely a state-sponsored act.

In particular, the code of this malware overlaps with versions of the BlackEnergy malware - which was responsible for multiple large-scale attacks that targeted devices in Ukraine. The researchers have observed VPNFilter, a potentially destructive malware, actively infecting Ukrainian hosts at an alarming rate, utilizing a command and control (C2) infrastructure dedicated to that country.

Talos estimates the number of infected devices to be at least 500,000 in at least 54 countries. The known devices affected by VPNFilter are Linksys, MikroTik, NETGEAR and TP-Link networking equipment in the small and home office (SOHO) space, as well at QNAP network-attached storage (NAS) devices.

Tags: malware
Previous Post
Google Takes The Lead Over Amazon in Smart Speaker Market
Next Post
ASUS Chromebox 3 Series Coming in July

Related Posts

  • Intel and Microsoft Convert Malware to Images to Spot Threads Faster

  • Malwarebytes Outlines Coronavirus Scams

  • Google's AI Tool Scans Billions of Gmail Attachments to Secure Inboxes

  • Pentagon, DHS And FBI Issued New Malware Warning For Windows Users

  • Lazarus Group Targets Linux With New Malware

  • Hackers Targeted Government Officials Using WhatsApp Malware

  • Malware Masked as Textbooks and Essays

  • Samsung Laptop Full of Notorious Malware Is On Sale For $1.2M

Latest News

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger
Smartphones

COLORFUL Launches iGame Guard G114 140W GaN Multi-Port Charger

INNO3D TOWER WORKSTATION AWS-511Z-R1
Enterprise & IT

INNO3D TOWER WORKSTATION AWS-511Z-R1

Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device
GPUs

Thermal Grizzly and Noctua introduce WireView Pro II Noctua Edition GPU monitoring device

Nikon releases the Z5IIC full-frame mirrorless camera
Cameras

Nikon releases the Z5IIC full-frame mirrorless camera

Announcing the New ASUS Googlebook 14
Enterprise & IT

Announcing the New ASUS Googlebook 14

Popular Reviews

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

The Quiet Technology Behind the Spin

The Quiet Technology Behind the Spin

SoundPeats Cove Pro

SoundPeats Cove Pro

Akaso Brave 8 Lite

Akaso Brave 8 Lite

Kioxia Exceria Plus G3 512GB microSD

Kioxia Exceria Plus G3 512GB microSD

SoundPeats C30

SoundPeats C30

be quiet! Dark Perk Mice

be quiet! Dark Perk Mice

XbotGo Chamaleon

XbotGo Chamaleon

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed