US, British Governments Warn Businesses Worldwide of Russian Campaign to Hack Routers

Advertisement
By Ellen Nakashima, The Washington Post | Updated: 17 April 2018 12:14 IST
Highlights
  • Attack allegedly launched for espionage and possibly sabotage purposes
  • These network devices make "ideal targets": Homeland Security
  • "Once you own the router, you own the traffic"

The US and British governments on Monday accused Russia of conducting a massive campaign to compromise computer routers and firewalls around the world - from home offices to Internet providers - for espionage and possibly sabotage purposes.

The unusual public warning from the White House, US agencies and Britain's National Cyber Security Center follows a years-long effort to monitor the threat. The targets number in the millions, officials say, and include "primarily government and private-sector organisations, critical infrastructure providers, and the Internet service providers (ISPs) supporting these sectors."

It was the two countries' first such joint alert.

"We have high confidence that Russia has carried out a coordinated campaign to compromise . . . routers, residential and business - the things you and I have in our home," said Rob Joyce, the White House cybersecurity coordinator.

Advertisement

"We condemn the actions and hold the Kremlin responsible for the malicious activities," said Jeanette Manfra, the chief cybersecurity official for the Department of Homeland Security.

Advertisement

The warning is unrelated to the administration's recent military strikes on suspected chemical weapons facilities in Syria, action Russia condemned. Rather, it is part of a broader ongoing effort by the US government to call out bad behaviour in cyberspace and impose costs as a deterrent.

"When we see malicious cyber activity, whether it be from the Kremlin or other malicious actors, we're going to push back," Joyce said.

Advertisement

Monday's announcement is the latest in a series of related moves by the Trump administration, which in recent months has publicly blamed Russia for launching the NotPetya worm that has been characterised as the costliest and most destructive cyberattack in history. It also recently announced that Russia had targeted the US energy grid with computer malware, and it slapped fresh sanctions on Russian hackers for illicit cyber activity.

The US government also has obtained indictments against Iranian hackers, and accused North Korea of being behind the WannaCry computer worm that affected more than 230,000 computers around the world.

Advertisement

The US and British governments jointly tracked the latest campaign, which has targeted millions of machines globally, said Ciaran Martin, chief executive of Britain's NCSC, the government's central cybersecurity agency.

The aim seems to be to "seize control" of the machines that connect networks to the Internet, and in the case of Internet providers, to gain access to their customers, for espionage or other purposes, he said.

These network devices make "ideal targets," said Manfra, Homeland Security's assistant secretary for cybersecurity and communications. Most traffic within a company or between organizations traverses them. So a hacker can monitor, modify or disrupt it, she said. And they're usually not secured at the same level as a network server.

"Once you own the router, you own the traffic that's traversing the router," she said.

The agencies, which include the FBI, do not know precisely how many routers, firewalls and switches have been compromised and to what extent. They are seeking the cooperation of home office and private-sector business owners in sharing information if they determine their networks have been compromised.

In its alert Monday, DHS described the hackers' techniques, from scanning Internet address spaces to exploiting routers, switches and network intrusion-detection devices.

US officials said this year that Russian military hackers compromised routers in South Korea in January and deployed new malware when the Olympics began in February. It was not clear Monday whether that compromise was part of the same campaign.

© 2018 The Washington Post

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Russia, Router, Hacking, Internet, Cyber-Attack
Advertisement

Related Stories

Popular Mobile Brands
  1. Dark Matter and Dark Energy Might Not Exist After All, New Study Suggests
  2. Poco F8 Pro Retail Box Leak Hints at 'Sound by Bose' Branding
  3. Jio's Free Google AI Pro Subscription Is Live for All Age Groups: How to Claim
  4. Lava Agni 4 Battery Details Leaked Ahead of Launch in India on November 20
  5. Thalavara Begins Streaming Online: Know Where to Watch the Arjun Ashokan-Starrer
  6. iPhone 18 Pro Models to Sport 'Transparent' Rear Panel, Tipster Claims
  1. Thalavara Begins Streaming Online: Know Where to Watch Arjun Ashokan's Coming of Age Drama
  2. Jio’s Free Google AI Pro Subscription Is Live for All Age Groups: How to Claim
  3. Dark Matter and Dark Energy Might Not Exist After All, New Study Suggests
  4. Ek Chatur Naar Starts Streaming Online: Know Where to Watch Neil Nitin Mukesh's Dark Comedy Thriller
  5. Astronomers Spot Signs of Baby Planets in a Star’s Mysterious Disk
  6. NASA's James Webb Space Telescope Telescope Challenges Old Theories on Mini-Neptune Worlds
  7. Ziddi Ishq OTT Release: Know When, Where to Watch the Aaditi Pohankar, Parambrata Chattopadhyay Starrer
  8. Bad Guys: Breaking In Now Streaming on Netflix: This Is What You Need to Know
  9. Kiss Now Streaming on Zee5: Everything You Need to Know About the Tamil Romance Fantasy
  10. Network Is Now Streaming Online: Know Where to Watch the Telugu Action Web Series Online
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.