A joint advisory from US and allied agencies warns of Russian state-sponsored actors targeting critical infrastructure sectors via attacks exploiting vulnerable and misconfigured routers. The primary attack vector involves leveraging unpatched or misconfigured network perimeter devices to gain initial access. The advisory emphasizes the urgent need to apply security patches to these devices, though specific CVEs, affected versions, or fixed versions are not detailed in the provided article.
The US authorities NSA, FBI, and CISA warn that Russian hackers have recently carried out a number of attacks on critical infrastructure in North America and Europe. Hackers are reportedly breaking into networks using vulnerable and misconfigured routers, making it extra important to install the latest security patches. The most vulnerable are infrastructure related to energy, communications, healthcare, industry, the economy, and defense. Authorities in Australia, the UK, Canada, New Zealand, Estonia, Finland, France, and Italy support the warning, reports Bleeping Computer .