Warning: New malicious code is infecting about 500,000 router devices
Cisco researchers have released a warning warning about a malicious malicious code called VPNFilter, which is spread by a group of hackers spreading more than 500,000 home or small companies' devices across the globe. world.
Router devices from many familiar manufacturers like Linksys, MikroTik, Netgear, TP-Link and even QNAP storage devices have also been infected with this VPNFilter.
Hackers can use VPNFilter to collect communications, open attacks to other devices and with a single command can permanently destroy the device. In particular, even if the device has been restarted, it cannot remove this malicious code.
Photo: ARSTECHNICA.
Cisco researchers said VPNFilter began to be distributed at least in 2016 and has now spread at least in 54 countries.
VPNFilter attacks have skyrocketed in the past 3 weeks and recently the hacker group has improved to increase the attack capacity of this malicious code, causing Cisco researchers to issue a warning report even though the code research Their VPNFilter exclusive is not complete.
According to updated information, a primary server used to attack routers using VPNFilter has been seized by the US Federal Bureau of Investigation (FBI).
Yesterday (May 23), Symantec antivirus software vendor announced that router devices were attacked by VPNFilter malware including:
According to Cisco and Symantec's advice, if a user is using one of the routers on the list, reset the device by holding down a button behind the router for 5-10 seconds. After the device restarts, the user will have to log in again because the reset has deleted all existing configuration settings.
- Instructions for configuring Cisco routers
- Cisco Router Configuration Guide 1800 series (Cisco 1801, 1802, 1803, 1811, 1812)
Users should reinstall the device's password and upgrade the latest firmware to the Router even though it is unclear but this will help prevent this malicious infection in any case.
According to experts, there is no simple way to determine if a router is infected with VPNFilter.
See more:
- Warning: new code of virtual money digging is available via Facebook Messenger
- Microsoft Office 365 version is supported against blackmail
- Warning: GandCrab extortionist code is attacking Vietnam
You should read it
- After WannaCry, Petya's 'extortion' malicious code is raging, this is a remedy to prevent
- 10 million Android devices are preinstalled with malicious code from the factory
- 14 games on the App Store contain malicious code, iPhone users be careful
- Malicious code is growing up
- Malware sneaks into iOS through Apple's official distribution channels
- Signs that the smartphone has been infected with malware
- Find bug in Emotet malware, prevent it from spreading for 6 months
- Disable malicious HiddenTear Ransomware with HT Brute Forcer
May be interested
- The browser is too smart, hackers turn to embed zero-day Flash malicious code into Microsoft Office fileswhen unable to bypass the flash browser, attackers are switching to office files, most recently hackers targeting diplomats in the middle east.
- Warning of new malware appear like Wannacry, capable of deleting Vietnamese percussion on computera new type of malicious code appeared, taking advantage of vulnerabilities in the windows operating system (the ms17-010 vulnerability was announced in march 2017) to spread widely in the local area network (lan) (similar to how it spreads). like the legendary wannacry virus) is spreading in vietnam.
- Warning: Bkav detected more than 700,000 computers in Vietnam infected with virtual money digging virus that slowed down the computerbkav has just warned that more than 735,000 computers in vietnam have been infected with w32.coinminer virus. this is a dangerous virtual money digging virus, it will take control and take advantage of the victim's computer to dig virtual money.
- Half a million computers in Vietnam suffer from dangerous spywareaccording to bkav, browserspy spyware is spreading strongly on devices in vietnam. since the beginning of july, there have been more than 560,000 domestic computers monitored by this malicious program and this number is still growing rapidly.
- Hackers took control of 18,000 Huawei router devices in just one dayresearcher from newsky security recently discovered a hacker nicknamed anarchy, only 24 hours to build a botnet from 18,000 huawei router devices.
- The whole city had to return to the 'stone' era using typewriters because the entire computer system was hackedcomputer systems in mat su, a small city and the town of valdez in alaska, usa were attacked and 'kidnapped' caused the entire computer system, phone, server, e-mail server at this area is numb.