Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • OneOdio Focus A1 Pro review
    • The 11 Best Fans to Buy Before It Gets Hot Again (2026)
    • A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)
    • ‘Euphoria’ Season 3 Release Schedule: When Does Episode 2 Come Out?
    • Francis Bacon and the Scientific Method
    • Proxy-Pointer RAG: Structure Meets Scale at 100% Accuracy with Smarter Retrieval
    • Sulfur lava exoplanet L 98-59 d defies classification
    • Hisense U7SG TV Review (2026): Better Design, Great Value
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Sunday, April 19
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Thousands of hacked TP-Link routers used in years-long account takeover attacks
    News

    Thousands of hacked TP-Link routers used in years-long account takeover attacks

    Editor Times FeaturedBy Editor Times FeaturedNovember 3, 2024No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    Hackers engaged on behalf of the Chinese language authorities are utilizing a botnet of hundreds of routers, cameras, and different Web-connected units to carry out extremely evasive password spray assaults in opposition to customers of Microsoft’s Azure cloud service, the corporate warned Thursday.

    The malicious community, made up virtually totally of TP-Hyperlink routers, was first documented in October 2023 by a researcher who named it Botnet-7777. The geographically dispersed assortment of greater than 16,000 compromised units at its peak obtained its identify as a result of it exposes its malicious malware on port 7777.

    Account compromise at scale

    In July and once more in August of this yr, safety researchers from Serbia and Team Cymru reported the botnet was nonetheless operational. All three reviews mentioned that Botnet-7777 was getting used to skillfully carry out password spraying, a type of assault that sends massive numbers of login makes an attempt from many various IP addresses. As a result of every particular person gadget limits the login makes an attempt, the fastidiously coordinated account-takeover marketing campaign is difficult to detect by the focused service.

    On Thursday, Microsoft reported that CovertNetwork-1658—the identify Microsoft makes use of to trace the botnet—is being utilized by a number of Chinese language risk actors in an try to compromise focused Azure accounts. The corporate mentioned the assaults are “extremely evasive” as a result of the botnet—now estimated at about 8,000 robust on common—takes pains to hide the malicious exercise.

    “Any risk actor utilizing the CovertNetwork-1658 infrastructure might conduct password spraying campaigns at a bigger scale and tremendously enhance the probability of profitable credential compromise and preliminary entry to a number of organizations in a brief period of time,” Microsoft officers wrote. “This scale, mixed with fast operational turnover of compromised credentials between CovertNetwork-1658 and Chinese language risk actors, permits for the potential of account compromises throughout a number of sectors and geographic areas.

    Among the traits that make detection troublesome are:

    • Using compromised SOHO IP addresses
    • Using a rotating set of IP addresses at any given time. The risk actors had hundreds of accessible IP addresses at their disposal. The common uptime for a CovertNetwork-1658 node is roughly 90 days.
    • The low-volume password spray course of; for instance, monitoring for a number of failed sign-in makes an attempt from one IP handle or to 1 account is not going to detect this exercise.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)

    April 19, 2026

    Google is in talks with Marvell Technology to develop a memory processing unit that works alongside TPUs, and a new TPU for running AI models (Qianer Liu/The Information)

    April 19, 2026

    At the Beijing half-marathon, several humanoid robots beat human winners by 10+ minutes; a robot made by Honor beat the human world record held by Jacob Kiplimo (Reuters)

    April 19, 2026

    A look at the AI nonprofit METR, whose time-horizon metrics are used by AI researchers and Wall Street investors to track the rapid development of AI systems (Kevin Roose/New York Times)

    April 19, 2026

    Binance and Bitget to probe a rally in RaveDAO’s RAVE token, which surged 4,500% in a week, after ZachXBT alleged RAVE insiders engineered a large short squeeze (Francisco Rodrigues/CoinDesk)

    April 19, 2026

    Mistral, which once aimed for top open models, now leans on being an alternative to Chinese and US labs, says it’s on track for $80M in monthly revenue by Dec. (Iain Martin/Forbes)

    April 19, 2026

    Comments are closed.

    Editors Picks

    OneOdio Focus A1 Pro review

    April 19, 2026

    The 11 Best Fans to Buy Before It Gets Hot Again (2026)

    April 19, 2026

    A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)

    April 19, 2026

    ‘Euphoria’ Season 3 Release Schedule: When Does Episode 2 Come Out?

    April 19, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    HHS Is Using AI Tools From Palantir to Target ‘DEI’ and ‘Gender Ideology’ in Grants

    February 2, 2026

    2024 Innovator of the Year: Shawn Shan builds tools to help artists fight back against exploitative AI

    September 10, 2024

    For the First Time, Mutations in a Single Gene Have Been Linked to Mental Illness

    December 8, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.