Chinese state-sponsored hackers exploit TP-Link routers with custom malware

1 min read
Source: Ars Technica
Chinese state-sponsored hackers exploit TP-Link routers with custom malware
Photo: Ars Technica
TL;DR Summary

Malicious firmware has been discovered that can turn residential and small office routers into a network that relays traffic to command and control servers maintained by Chinese state-sponsored hackers. The firmware implant contains a full-featured backdoor that allows attackers to establish communications and file transfers with infected devices, remotely issue commands, and upload, download, and delete files. The malware's ultimate purpose is to relay communication between two nodes, creating a chain of nodes that will relay traffic to the command and control server, making it difficult for defenders to trace the traffic back to the C2.

Share this article

Reading Insights

Total Reads

1

Unique Readers

27

Time Saved

2 min

vs 3 min read

Condensed

84%

58996 words

Want the full story? Read the original article

Read on Ars Technica