Western agencies warn of russian hackers on tp-link routers

The FBI, BND and BfV warn of attacks by Russian state hackers on TP-Link routers and WLAN extenders. The Fancy Bear group has infiltrated thousands of devices worldwide to steal sensitive data. In Germany, 30 affected devices have already been detected.

International agencies including the FBI, NSA, BND and BfV issued a joint warning on Monday evening. They attribute the attacks to the Fancy Bear group, also known as APT 28, linked to Russia's GRU military intelligence. The hacks target military, government and critical infrastructure data.

Since mid-March, German IT firms, restaurants and private individuals received confidential letters from the BfV. It stated: "A Russian state cyber actor is currently compromising TP-Link network devices." Affected parties were instructed on detecting and fixing infections. In Germany, experts confirmed compromises and are forensically examining devices.

Hackers have exploited a known vulnerability in TP-Link devices since 2024, fixable via firmware updates. Using DNS hijacking, they redirect web requests to controlled servers to steal passwords, emails and browsing histories. The UK's National Cyber Security Centre also reports attacks on MikroTik routers.

The BfV plans to act against APT 28. TP-Link, originally Chinese, faces scrutiny: Texas sued in February, and the US FCC recently banned imports for security reasons.

Mga Kaugnay na Artikulo

Illustration depicting FCC ban on new foreign-made routers due to security risks, featuring banned router, US flag, and production shift to America.
Larawang ginawa ng AI

FCC bans new foreign-made routers as security risk

Iniulat ng AI Larawang ginawa ng AI

The Federal Communications Commission announced on March 23, 2026, that new consumer-grade routers manufactured outside the US pose an unacceptable national security risk and will be added to its Covered List. The ban applies to sales of new models but spares existing and previously authorized routers. Manufacturers may seek exemptions by planning to shift production to the US.

The state of Texas has filed a lawsuit against TP-Link, citing concerns over the company's suspected links to China and potential security vulnerabilities. This legal action highlights ongoing worries about foreign influences in technology products. The suit was reported in a TechRadar article published on February 19, 2026.

Iniulat ng AI

Following the FCC's March 23 announcement banning sales of new Wi-Fi routers with major foreign manufacturing due to security risks, companies like TP-Link and Netgear have responded with production shift plans, while experts cite threats like Salt Typhoon and warn of update cutoffs after March 1, 2027. No exemptions granted yet; Starlink routers appear unaffected.

A joint advisory from US agencies warns that Iranian hackers are intensifying cyberattacks on critical infrastructure sectors like water and energy. The attacks have caused operational disruptions and financial losses, according to the FBI. The warning comes amid heightened tensions in the Middle East.

Iniulat ng AI

Inutusan ng mga awtoridad ng China ang mga lokal na kumpanya na itigil ang paggamit ng software ng cybersecurity mula sa higit kumulang labindalawang firm mula sa US at Israel dahil sa alalahanin sa seguridad pambansa. Ito ay bahagi ng pagsisikap ng Beijing na palitan ang teknolohiyang Kanluranin ng mga alternatibong lokal habang nagpapakita ng tensyon sa teknolohiya laban sa Estados Unidos. Ayon sa tatlong source na pamilyar sa usapan, inilabas ang direktiba kamakailan.

Automated attacks are targeting Fortinet FortiGate devices, creating unauthorized accounts and stealing firewall data. A recent patch from Fortinet may not be as effective as anticipated. The issue was reported on January 23, 2026.

Iniulat ng AI

One day after an arson attack on a cable bridge over the Teltow Canal caused a major power outage in southwest Berlin, the left-extremist Vulkangruppe group has claimed responsibility, with authorities deeming the statement authentic. Governing Mayor Kai Wegner calls it terrorism. Partial reconnections are underway, but full restoration may take until Thursday.

 

 

 

Gumagamit ng cookies ang website na ito

Gumagamit kami ng cookies para sa analytics upang mapabuti ang aming site. Basahin ang aming patakaran sa privacy para sa higit pang impormasyon.
Tanggihan