Site icon Panda Security Mediacenter

The FBI advises users to reset their routers to stop VPNFilter

Routers in Europe and Asia have been the clear goal for cybercriminals in the past weeks. The expansion of the malware Roaming Mantis, which attacks routers using a domain name system (DNS) hijacking technique, has expanded its capabilities to include cryptomining.

In the last few hours, another cyber nightmare has added its name to the list of threats: the malware VPNFilter, which has affected over 500,000 routers in 54 countries, resulting in a global threat. Some particular features of this botnet are the potential to carry out a massive coordinated attack using the affected routers, sharing data, and rendering devices useless via a kill switch. Some of the code it uses has already been seen in previous Russian cyberattacks, and in similar attacks on European countries such as Ukraine, where the country’s power grids were attacked by malware like this.

Now, the FBI  seems to have hit on the key to stop VPNFilter. A vital step in getting the malware under control was a court ruling which allowed the FBBI to seize a domain called ToKnowAll.com that was going to be used to coordinate the affected routers.

Although the malware mainly affects several makes of routers, the FBI has recommended that all users of small or home office routers take precautionary measures, such as rebooting the routers, updating to the latest version of the firmware, and turning off remote management settings. The Bureau also suggests strengthening passwords and encryption settings.

According to the Department of Justice, it is likely that a group known as “Sofacy” and “Fancy Bear” among other names, which answers to the Russian government, is behind the malware. This isn’t the first time the group has made the headlines; it has also been blamed for the attack on the Democratic National Committee during the 2016 US presidential campaign.

 

How can you protect your company from a malware attack?

 

With cyberattacks like this making the news almost daily, the only way to protect against them is with an endpoint security solution that incorporates prevention, detection, containment and cleanup with forensic analysis tools, in a lightweight agent and cloud infrastructure like Panda Adaptive Defense 360. Discover all the business protection solutions that Panda Security has to offer.

Exit mobile version