Jump to content
The World News Media

Newly Discovered Router Malware Likely Created By Govt. Agency


Guest

Recommended Posts

  • Guest

Slingshot-Malware.jpg

Security researchers have discovered a new piece of malware that’s so sophisticated that it went undetected for six years.

The so-called Slingshot malware was first spotted by researchers at Kaspersky Lab. Instead of infecting a computer, Slingshot embeds itself into a network’s router. And it’s so advanced that researchers thoroughly believe it was developed by a state government or agency.

Slingshot has been active since at least 2012, but managed to go unnoticed. ThatÂ’s because, according to Kaspersky, the malware is extremely sophisticated and has a variety of ways to avoid detection. When forensic tools are active, for example, Slingshot is intelligent enough to shut down certain components.

The malware was most likely developed for spying purposes. It can basically steal any kind of data it wants, from network traffic, keystrokes and passwords to screenshots and even data pulled from a connected USB device.

Once it infects a router, Slingshot is able to deploy “huge and powerful” modules on a target computer. Those modules will then work together to send data to the attacker.

Slingshot-apt-malware.jpg

“Slingshot is very complex, and the developers behind it have clearly spent a great deal of time and money on its creation,” researchers wrote. “Its infection vector is remarkable — and, to the best of our knowledge, unique.”

Kaspersky Labs still doesn’t know how the router actually compromises a system, either. Researchers know that it takes advantage of the router’s management software, and can exist in “several” instances.

The majority of compromised computers were located in Kenya and Yemen, but the researchers detected infected systems in Afghanistan, Libya, Congo, Jordan, Turkey, Iraq, Sudan, Somalia and Tanzania. Targets include individuals, governments and institutional systems.

Kaspersky Labs noted that the malwareÂ’s debug messages were written in perfect English. That could hint that its creators spoke that language fluently.

As Engadget points out, it’s possible that the malware was developed by one of the countries belonging to the Five Eyes intelligence alliance — Australia, Canada, New Zealand, the UK or the US — to keep an eye on nations with significant terrorist activity. But that’s speculation at this point.

ItÂ’s not clear how many computers total are affected by Slingshot. But, thankfully, impacted routers will be fixed with a software update.

Link to comment
Share on other sites


  • Views 1k
  • Replies 0
  • Created
  • Last Reply

Popular Days

Posted Images

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...




×
×
  • Create New...

Important Information

Terms of Service Confirmation Terms of Use Privacy Policy Guidelines We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.