CCleaner Breach Used by Hackers to Attack Tech Companies: Cisco

Advertisement
By Reuters | Updated: 21 September 2017 09:52 IST

The hackers who broke into widely used computer utility software in August also tried to infect machines at Microsoft, Intel and other top technology companies, according to research by Cisco Systems released late on Wednesday.

That suggests the breach, disclosed on Monday, was far more serious than initially described by Piriform, maker of the infected CCleaner utility and now a part of Prague-based Avast Software.

Piriform and more recently Avast said in blog posts this week that no damage had been detected, although more than 2 million people had installed tainted versions of CCleaner.

Advertisement

Even though those versions allowed for remote communication with websites controlled by the hackers, Avast said alarm was unwarranted because the company cooperated with researchers and law enforcement and took control of the command sites early on.

Advertisement

But researchers at Cisco, one of the companies that had warned Avast of the attack, said Wednesday that a control server seized by US law enforcement showed that the hackers had installed additional malicious software on a selected group of at least 20 machines.

It is unclear which companies housed those computers, but the data showed that the hackers had gone after networks at major technology companies. The list included Samsung, Sony, Akamai and Cisco itself.

Advertisement

"It's like the bad guys cast a net and caught all the fish, but only wanted to infect the machines that were most interesting," said researcher Craig Williams of Cisco's Talos unit.

The attackers could have been using the foothold provided by CCleaner installations to steal technology secrets from those companies, Williams said.

Advertisement

More troubling, they could have been looking to get malicious code inside those companies' products, which are used by high-value targets in government and business around the world.

Avast Chief Technology Officer Ondrej Vlcek confirmed that "a very small minority of the endpoints" had received subsequent infections. He said the company had been contacting affected firms quietly.

"We don't believe in going public with any of this stuff while investigation is still ongoing," he said. "We know that this is also the preference of the law enforcement personnel."

Security firm Kaspersky Lab, Cisco and others said the attack reused code previously seen in hacks connected to Chinese authorities. But the code could have been stolen, so the CCleaner hackers might not be from that country.

Vlcek said consumer CCleaner users still did not need to restore their computers from backups.

© Thomson Reuters 2017

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Cisco, Avast, CCleaner, Piriform, Hack, Microsoft, Intel
Advertisement

Related Stories

Popular Mobile Brands
  1. Realme P4x 5G Launch Today: Know Price in India, Specs and More
  2. Realme P4x 5G Launched in India With 7,000mAh Battery: See Price, Features
  3. Motorola Edge 70 India Launch Date Leaked; Might Arrive With Bigger Battery
  4. Micron to Shut Down Crucial Amid Global RAM Shortage
  5. OnePlus Ace 6T With Massive 8,300mAh Battery Launched at This Price
  6. Motorola Edge 70 Ultra Leaked Renders Hint at Design, Colourways
  7. Bitcoin Holds Near $93,000 as Crypto Market Shows Early Recovery
  8. Pariah OTT Release: Vikram Chatterjee's Dog-Drama Lands on OTT Soon
  9. Apple Rolls Out iOS 26.2 RC Update for iPhone With These Fixes
  10. Apple Watch's Hypertension Notifications Feature Comes to India
  1. Bitcoin Price Consolidates Near $93,200 as Crypto Market Recovers From November Slowdown
  2. Realme P4x 5G Launched in India With MediaTek Dimensity 7400 Ultra SoC, 7,000mAh Battery: Price, Features
  3. iOS 26.2 Release Candidate Update Rolls Out to Beta Testers as Apple Prompts Users to Upgrade to iOS 26
  4. Amazon's Alexa+ AI Scene Search Feature Rolls Out to Prime Video on Fire TV: Here's How It Works
  5. Samsung Schedules 'The First Look' Event Two Days Ahead of CES 2026; Galaxy Z TriFold Global Launch Expected
  6. Micron Announces Exit from Consumer Business, to Shut Down Crucial Amid Global RAM Shortage
  7. Infinix Note 60 Ultra to Launch as Firm’s First Smartphone Designed by Pininfarina
  8. iPhone 17e Expected to Arrive With Thinner Bezels Alongside Dynamic Island: Report
  9. Apple Brings Hypertension Notifications Feature for Apple Watch to India: How to Use, Requirements, and More
  10. Samsung Galaxy Buds 4 Leak Hints at Smaller Battery; Galaxy Buds 4 Pro Could Get a Slight Upgrade
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.