Cisco Router Attacks Hit 4 Countries Including India: Report

Advertisement
By Reuters | Updated: 15 September 2015 14:07 IST
Security researchers say they have uncovered previously unknown attacks on routers which direct traffic around the Internet, allowing hackers to harvest vast amounts of data while going undetected by existing cyber-security defences.

The attacks replace the operating system used in network equipment from Cisco, the world's biggest maker of routers, the computer forensic arm of US security research firm FireEye, Mandiant, said on Tuesday.

So far, Mandiant has found 14 instances of router implants in India, Mexico, Philippines and Ukraine, the company said in a blog post.

Separately, Cisco confirmed that it had alerted customers to these attacks on Cisco operating system software platforms.

Advertisement

The company said that it had worked with Mandiant to develop ways for customers detect the attack, which if found, will require them to re-image the software used to control their routers.

"If you own (seize control of) the router, you own the data of all the companies and government organisations that sit behind that router," FireEye Chief Executive Dave DeWalt said of his company's discovery.

Routers operate outside the perimeter of firewalls, anti-virus and other security tools which organisations around the world use to safeguard data traffic.

Advertisement

Effectively, the $80 billion (roughly Rs. 5,31,436 crores) which technology market research firm IDC estimates is spent annually on cyber-security tools offer no protection against this form of attack, according to FireEye.

The malicious programme has been dubbed "SYNful", a reference to how the implanted software can jump from router to router using their syndication functions.

Advertisement

Computer logs from infected routers suggest the attacks have been taking place for at least a year, FireEye's DeWalt said.

Cisco said SYNful did not take advantage of any vulnerability in its own software. Instead it stole valid network administration credentials from organisations targeted in the attacks or by gaining physical access to their routers.

Advertisement

The affected routers have been used to hit multiple industries and government agencies, DeWalt said.

The implanted software, which duplicates normal router functions, could also potentially affect routers from other makers, he said.

© Thomson Reuters 2015

 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Further reading: Attacks, Cisco, Data Hack, Internet
Advertisement

Related Stories

Popular Mobile Brands
  1. Amazon Great Republic Day Sale 2026: Know the Best Deals on Tablets
  2. Ustaad Bhagat Singh OTT Release: When, Where to Watch the Telugu Action Drama
  3. Hackers Steal Hundreds of Gigabytes of Data from European Space Agency
  4. Amazon Great Republic Day Sale 2026: Top Deals on Refrigerators
  1. Toxic Gas May Have Sparked Life on Earth Through Icy ‘Cobweb’ Crystals
  2. Is Space Sticky? New Study Challenges Standard Dark Energy Theory
  3. Sirai OTT Release: When, Where to Watch the Tamil Courtroom Drama Online
  4. Wheel of Fortune India OTT Release: When, Where to Watch Akshay Kumar-Hosted Global Game Show
  5. NASA Confirms Expedition 74 Will Continue ISS Work After Crew-11 Exit
  6. European Space Agency Hit by Cyberattacks, Hundreds of Gigabytes of Data Stolen by Hackers
  7. Ustaad Bhagat Singh OTT Release: When, Where to Watch Harish Shankar's Telugu Action Drama Film
  8. Bha Bha Ba is Now Streaming: All You Need to Know About This Malayalam Comedy Thriller Film
  9. World’s Biggest Alien Search Enters Final Stage With 100 Mystery Signals
  10. NASA Pulls Out Artemis II Rocket to Launch Pad Ahead of Historic Moon Mission
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.