British authorities in the field of cybersecurity have issued a warning regarding an extensive digital espionage campaign conducted by the APT28 group, associated with Russian military intelligence services. This campaign targets SOHO routers, commonly used in homes and organizations, allowing attackers to intercept internet traffic and collect sensitive information.
The UK's National Cyber Security Centre (NCSC) has emphasized that the attacks exploit known vulnerabilities in insufficiently secured network equipment, affecting thousands of devices and hundreds of organizations. Hackers have managed to gain access to these routers through default passwords or unsecured protocols, turning them into strategic points for monitoring network traffic.
Through the technique of 'DNS hijacking', attackers redirect traffic through servers they control, intercepting sensitive data. The campaign has affected over 5,000 devices and 200 organizations, being identified in at least 120 countries. British authorities and international partners recommend updating router firmware and changing default passwords to mitigate risks.
This activity highlights vulnerabilities in commonly used devices and the increasing trend of using civilian infrastructure for cyber espionage.
Sources
Latest News
18:24
17:52
17:16
16:37
15:59
See more news