Реклама партнера — Название партнёра
UNIT.City — місце, де люди працюють... КРАЩЕ! Обирай свій простір просто зараз 👉

Russians hacked Ukrainians' home and office Wi-Fi routers and used them to intercept passwords and emails. SBU, FBI, and EU counterintelligence hacked GRU network

The SBU, together with the FBI, Polish counterintelligence, and EU law enforcement agencies, conducted a coordinated cyber operation against the GRU intelligence network. The Russians hacked home and office Wi-Fi routers and used them to intercept passwords, authentication tokens, and emails.

Leave a comment
Russians hacked Ukrainians' home and office Wi-Fi routers and used them to intercept passwords and emails. SBU, FBI, and EU counterintelligence hacked GRU network

The SBU, together with the FBI, Polish counterintelligence, and EU law enforcement agencies, conducted a coordinated cyber operation against the GRU intelligence network. The Russians hacked home and office Wi-Fi routers and used them to intercept passwords, authentication tokens, and emails.

During the operation, more than 100 GRU servers were blocked, and hundreds of routers were taken out of enemy control in Ukraine alone. The area of ​​special attention includes employees of state bodies, servicemen of the Defense Forces, and employees of defense industry enterprises.

How it worked

The GRU targeted routers with outdated software — the so-called SOHO (Small Office/Home Office) equipment. Once hacked, they would redirect traffic through their own network of DNS servers and become «middlemen» between the user and the Internet.

This allowed the interception of data, even SSL/TLS-protected data, including passwords, authentication tokens, and email content. The resulting data was intended to be used for cyberattacks, information sabotage, and intelligence gathering.

What to do right now

The Security Service of Ukraine gives clear recommendations for all router owners:

  1. Check the current firmware version and install all available security updates.
  2. If the manufacturer no longer supports the device, replace the router.
  3. Change the control panel access password.
  4. Disable access to the control panel from the Internet.
  5. Check the settings and remove anything suspicious.

The SBU asks providers to help clients implement these measures.

If your router is older than 3-4 years and the manufacturer hasn’t released updates for a long time, there’s a high chance it won’t receive security patches anymore. This isn’t paranoia, but a specific GRU operation that was just stopped.

Spyware disguised as ChatGPT collects data from 15 million VS Code developers
Spyware disguised as ChatGPT collects data from 1.5 million VS Code developers
On the topic
Spyware disguised as ChatGPT collects data from 1.5 million VS Code developers
A man found a "spy" video of himself and his girlfriend on a porn site. Now they wear hats on the streets and stay as far away from hotels as possible. And what's the point of this Telegram story?
A man found a «spy» video of himself and his girlfriend on a porn site. Now they wear hats on the streets and stay as far away from hotels as possible. And what’s the point of this Telegram story?
On the topic
A man found a «spy» video of himself and his girlfriend on a porn site. Now they wear hats on the streets and stay as far away from hotels as possible. And what’s the point of this Telegram story?
Read the country's main IT news in our Telegram
Read the country’s main IT news in our Telegram
On the topic
Read the country’s main IT news in our Telegram

Have important news to share? Message our Telegram bot

Key events and useful links in our Telegram channel

Discussion
No comments yet.