Subject: FBI PSA warns of foreign malware threat to home and office routers

AlertsUSA Logo - Allow Images
SMS Alert Text:

FBI issues PSA urging owners of home & office network routers to power cycle the devices due to broad scope foreign malware threat. See email for more info.

Supplemental Info:


May 25, 2018

Alert Number
I-052518-PSA

FOREIGN CYBER ACTORS TARGET HOME AND OFFICE ROUTERS AND NETWORKED DEVICES WORLDWIDE

SUMMARY

The FBI recommends any owner of small office and home office routers power cycle (reboot) the devices. Foreign cyber actors have compromised hundreds of thousands of home and office routers and other networked devices worldwide. The actors used VPNFilter malware to target small office and home office routers. The malware is able to perform multiple functions, including possible information collection, device exploitation, and blocking network traffic.

TECHNICAL DETAILS

The size and scope of the infrastructure impacted by VPNFilter malware is significant. The malware targets routers produced by several manufacturers and network-attached storage devices by at least one manufacturer. The initial infection vector for this malware is currently unknown.

THREAT

VPNFilter is able to render small office and home office routers inoperable. The malware can potentially also collect information passing through the router. Detection and analysis of the malware’s network activity is complicated by its use of encryption and misattributable networks.

DEFENSE

The FBI recommends any owner of small office and home office routers reboot the devices to temporarily disrupt the malware and aid the potential identification of infected devices. Owners are advised to consider disabling remote management settings on devices and secure with strong passwords and encryption when enabled. Network devices should be upgraded to the latest available versions of firmware.

Read the original FBI PSA here:

https://www.ic3.gov/media/2018/180525.aspx


Service Notes:

This email message is a component of the AlertsUSA Homeland Security Threat and Incident Notification Service for mobile devices. You have paid for this service and are encouraged to archive these messages.

Service Issues? Let Us Know
service@AlertsUSA.com

Discount Subscription Link (share w/ friends):
http://AlertsUSA.com/discount.html

Threat Journal Newsletter:
http://ThreatJournal.com

Connect With Us:
Twitter: https://twitter.com/ThreatJournal
Facebook: https://www.facebook.com/ThreatJournal


LikeTwitterPinterestGooglePlusLinkedInForward
AlertsUSA, Inc, 29488 Woodward Ave #423, Royal Oak, Michigan 48073, United States
You may unsubscribe or change your contact details at any time.