US Government Warns Russian Hackers Are Targeting Your Router
With residential proxies all the rage, CISA urges router users to be vigilant.
Menu
Front Page Breaking News Comments Flagged Comments Recently Flagged User Blogs Write a Blog Entry Create a Poll Edit Account Weekly Digest Stats Page RSS Feed Back Page
Subscriptions
Read the Retort using RSS.
RSS Feed
Author Info
lamplighter
Joined 2013/04/13Visited 2026/08/14
Status: user
MORE STORIES
German Firefighting Robots Now Battling Blazes in Ukraine (1 comments) ...
Democratic Voters Are Making Clear They Just Want Change (3 comments) ...
DOJ could be held in contempt over unredacted Epstein files (2 comments) ...
Trump to spend at least $900M on WH construction projects (4 comments) ...
NY Judge: Unseal Maxwell-related Grand Jury Subpoenas (2 comments) ...
Alternate links: Google News | Twitter
[image or embed] -- Ars Technica (@arstechnica.com) 5:03 PM · Jul 13, 2026
[image or embed]
Admin's note: Participants in this discussion must follow the site's moderation policy. Profanity will be filtered. Abusive conduct is not allowed.
More from the article ...
... Both the Russian and Chinese governments have been compromising routers for years, sometimes in prolonged tugs-of-war to wrest control of devices the other has already commandeered. The US government has occasionally issued covert commands and taken other steps to disinfect routers. Google and other companies have also worked to disrupt the massive botnets that control compromised routers in lockstep. The actions to date are little more than whack-a-mole exercises as the operators simply replace their botnets with new ones. Proxy networks: The go-to tool "Russian Federal Security Service (FSB) Center 16 cyber actors continue to exploit poorly configured and vulnerable networking devices worldwide, opportunistically compromising multiple critical infrastructure sector networks," the Cybersecurity and Infrastructure Security Agency said Monday. The hacking groups are tracked under various names, including Berserk Bear, Energetic Bear, Crouching Yeti, Dragonfly, Ghost Blizzard, and Static Tundra. The advisory was co-issued by governments from around the world, including Australia, Denmark, New Zealand, and the UK. The primary means of compromise the agency warned about was hackers scanning IP ranges with active Simple Network Management Protocol (SNMP) agents that accept common or default authentication credentials. ...
"Russian Federal Security Service (FSB) Center 16 cyber actors continue to exploit poorly configured and vulnerable networking devices worldwide, opportunistically compromising multiple critical infrastructure sector networks," the Cybersecurity and Infrastructure Security Agency said Monday. The hacking groups are tracked under various names, including Berserk Bear, Energetic Bear, Crouching Yeti, Dragonfly, Ghost Blizzard, and Static Tundra. The advisory was co-issued by governments from around the world, including Australia, Denmark, New Zealand, and the UK.
The primary means of compromise the agency warned about was hackers scanning IP ranges with active Simple Network Management Protocol (SNMP) agents that accept common or default authentication credentials. ...
#1 | Posted by LampLighter at 2026-07-14 03:52 PM | Reply
Not our routers (i.e.,home). Somebody else's routers (i.e., businesses).
#2 | Posted by LegallyYourDead at 2026-07-14 07:53 PM | Reply
They aren't the only ones.
#3 | Posted by fresno500 at 2026-07-15 01:28 AM | Reply
...and?
#4 | Posted by RightisTrite at 2026-07-15 03:39 AM | Reply
Post a commentComments are closed for this entry.Home | Breaking News | Comments | User Blogs | Stats | Back Page | RSS Feed | RSS Spec | DMCA Compliance | Privacy
Comments are closed for this entry.
Home | Breaking News | Comments | User Blogs | Stats | Back Page | RSS Feed | RSS Spec | DMCA Compliance | Privacy