CVE Tools

US, Allies Warn of Russian Cyberattacks Targeting Critical Infrastructure Routers

SecurityWeekBy Ionut Arghire

Reported exploitedroutersBerserk Bearnetworking devices

Our summary

Government agencies from the U.S., UK, and several European countries have issued a joint warning about ongoing cyberattacks by Russian state-backed threat actors targeting routers and other networking equipment used in critical infrastructure. Attackers like Berserk Bear, Energetic Bear, and others are exploiting known vulnerabilities such as CVE-2008-4128 and CVE-2018-0171 to gain unauthorized access and execute arbitrary commands on Cisco devices. These attacks primarily affect sectors including energy, finance, healthcare, and government. Defenders are urged to disable outdated SNMP versions, enforce secure password policies, and apply patches to mitigate risks.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store