• Hidden backdoor inserted into Juniper routers

    Home » Forums » Cyber Security Information and Advisories » Code Red – Security/Privacy advisories » Hidden backdoor inserted into Juniper routers

    Author
    Topic
    #2742377

    Someone is slipping a hidden backdoor into Juniper routers across the globe, activated by a magic packet

    Someone has been quietly backdooring selected Juniper routers around the world in key sectors including semiconductor, energy, and manufacturing, since at least mid-2023.

    The devices were infected with what appears to be a variant of cd00r, a publicly available “invisible backdoor” designed to operate stealthily on a victim’s machine by monitoring network traffic for specific conditions before activating.

    It’s not yet publicly known how the snoops gained sufficient access to certain organizations’ Junos OS equipment to plant the backdoor, which gives them remote control over the networking gear. What we do know is that about half of the devices have been configured as VPN gateways.

    1 user thanked author for this post.
    Reply To: Hidden backdoor inserted into Juniper routers

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: