US, British Governments Warn Businesses Worldwide of Russian Campaign to Hack Routers

Advertisement
By Ellen Nakashima, The Washington Post | Updated: 17 April 2018 12:14 IST
Highlights
  • Attack allegedly launched for espionage and possibly sabotage purposes
  • These network devices make "ideal targets": Homeland Security
  • "Once you own the router, you own the traffic"

The US and British governments on Monday accused Russia of conducting a massive campaign to compromise computer routers and firewalls around the world - from home offices to Internet providers - for espionage and possibly sabotage purposes.

The unusual public warning from the White House, US agencies and Britain's National Cyber Security Center follows a years-long effort to monitor the threat. The targets number in the millions, officials say, and include "primarily government and private-sector organisations, critical infrastructure providers, and the Internet service providers (ISPs) supporting these sectors."

Advertisement

It was the two countries' first such joint alert.

"We have high confidence that Russia has carried out a coordinated campaign to compromise . . . routers, residential and business - the things you and I have in our home," said Rob Joyce, the White House cybersecurity coordinator.

Advertisement

"We condemn the actions and hold the Kremlin responsible for the malicious activities," said Jeanette Manfra, the chief cybersecurity official for the Department of Homeland Security.

The warning is unrelated to the administration's recent military strikes on suspected chemical weapons facilities in Syria, action Russia condemned. Rather, it is part of a broader ongoing effort by the US government to call out bad behaviour in cyberspace and impose costs as a deterrent.

Advertisement

"When we see malicious cyber activity, whether it be from the Kremlin or other malicious actors, we're going to push back," Joyce said.

Monday's announcement is the latest in a series of related moves by the Trump administration, which in recent months has publicly blamed Russia for launching the NotPetya worm that has been characterised as the costliest and most destructive cyberattack in history. It also recently announced that Russia had targeted the US energy grid with computer malware, and it slapped fresh sanctions on Russian hackers for illicit cyber activity.

Advertisement

The US government also has obtained indictments against Iranian hackers, and accused North Korea of being behind the WannaCry computer worm that affected more than 230,000 computers around the world.

The US and British governments jointly tracked the latest campaign, which has targeted millions of machines globally, said Ciaran Martin, chief executive of Britain's NCSC, the government's central cybersecurity agency.

The aim seems to be to "seize control" of the machines that connect networks to the Internet, and in the case of Internet providers, to gain access to their customers, for espionage or other purposes, he said.

These network devices make "ideal targets," said Manfra, Homeland Security's assistant secretary for cybersecurity and communications. Most traffic within a company or between organizations traverses them. So a hacker can monitor, modify or disrupt it, she said. And they're usually not secured at the same level as a network server.

"Once you own the router, you own the traffic that's traversing the router," she said.

The agencies, which include the FBI, do not know precisely how many routers, firewalls and switches have been compromised and to what extent. They are seeking the cooperation of home office and private-sector business owners in sharing information if they determine their networks have been compromised.

In its alert Monday, DHS described the hackers' techniques, from scanning Internet address spaces to exploiting routers, switches and network intrusion-detection devices.

US officials said this year that Russian military hackers compromised routers in South Korea in January and deployed new malware when the Olympics began in February. It was not clear Monday whether that compromise was part of the same campaign.

© 2018 The Washington Post

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Russia, Router, Hacking, Internet, Cyber-Attack
Advertisement

Related Stories

Popular Mobile Brands
  1. God of War Spinoff Will Reportedly Feature Tyr, Explore Several Mythologies
  2. Redmi A7 Pro 5G Goes on Sale in India: See Price, Features and Offers
  3. Red Magic 11s Pro Might Launch Soon Globally With These Features
  1. New Einstein Cross Reveals Surprising Galaxy Evolution
  2. Red Magic 11s Pro Global Launch Seems Imminent as Gaming Smartphone Surfaces on Certification Database
  3. Million Dollar Secrets Season 2 OTT Release: Date, Platform, Plot, Cast and What to Expect
  4. Fake Profile Season 3 Out on OTT: Know Where to Stream This Colombian Series Online
  5. Sony Xperia 1 VIII Could Feature a Headphone Jack and Support Wireless Charging, FCC Listing Suggests
  6. Zerion Links Crypto Cyberattack to North Korean Hackers Using AI Tactics
  7. Google’s SynthID AI Watermarking Tech Claimed to Be Reverse-Engineered
  8. Samsung Patent Hints at Triple-Folding Galaxy Z TriFold Wide With Broader Display
  9. Balls Up Out on OTT: Know Where to Stream This American Action-Comedy Film Online
  10. Oppo Reno 16 Pro Series Key Features, Colourways and Other Details Surface Online
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.