Slashdot Mirror


FBI Seizes Control of Russian Botnet (thedailybeast.com)

The Daily Beast reports that the FBI has seized control of a key server in the Kremlin's global botnet of 500,000 hacked routers. "The move positions the bureau to build a comprehensive list of victims of the attack, and short-circuits Moscow's ability to reinfect its targets," writes Kevin Poulsen. From the report: The FBI counter-operation goes after "VPN Filter," a piece of sophisticated malware linked to the same Russian hacking group, known as Fancy Bear, that breached the Democratic National Committee and the Hillary Clinton campaign during the 2016 election. On Wednesday security researchers at Cisco and Symantec separately provided new details on the malware, which has turned up in 54 countries including the United States.

VPN Filter uses known vulnerabilities to infect home office routers made by Linksys, MikroTik, NETGEAR, and TP-Link. Once in place, the malware reports back to a command-and-control infrastructure that can install purpose-built plug-ins, according to the researchers. One plug-in lets the hackers eavesdrop on the victim's Internet traffic to steal website credentials; another targets a protocol used in industrial control networks, such as those in the electric grid. A third lets the attacker cripple any or all of the infected devices at will.

2 of 179 comments (clear)

  1. Re:Trump is gonna be pissed. by negRo_slim · · Score: 0, Offtopic

    Did they ever release any actual evidence the Russians hacked the DNC?

    --
    On the Oregon Cost born and raised, On the beach is where I spent most of my days
  2. Re:Trump is gonna be pissed. by Anonymous Coward · · Score: 0, Offtopic

    Not only did they not, the only people who said there was evidence will no longer make that claim. The retracted their original statement, and since the FBI wasn't allowed to review the server, that means there is not a single person in the world that is willing to say this in court.

    Company is Crowdstrike, and the falsely accused Russia of hacking Ukraine before and had to also retract that as well.