Your router may be vulnerable to Russian hackers, FBI warns: 5 steps to take now
ID: 9fdf992e-5402-5dbb-9714-8e6eca3d9556
STIX ID: report--9fdf992e-5402-5dbb-9714-8e6eca3d9556
Feed Name: ZDNet Security
US federal agencies (FBI and NSA) warned that the Russian GRU-linked APT28 is targeting vulnerable SOHO routers worldwide to harvest credentials, authentication tokens, and perform DNS hijacking; older/end-of-life TP-Link devices and legacy routers are specifically mentioned. The advisory describes active exploitation at scale affecting government, military, critical infrastructure and consumer devices, and recommends mitigations including changing router admin passwords, updating firmware, replacing unsupported routers, disabling/tightening remote management, and periodic restarts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
