The BlackEnergy malware is crimeware turned APT tool and is used in significant geopolitical operations lightly documented over the past year. The malwares previously undescribed breadth means attackers present new technical challenges in unusual environments, including SCADA networks. An even more interesting part of the BlackEnergy story is the relatively unknown custom plugin capabilities to attack ARM and MIPS platforms, scripts for Cisco network devices, a certificate stealer and more. Here, we present available data it is difficult to collect on this APT.”]
Source: https://securelist.com/be2-custom-plugins-router-abuse-and-target-profiles/67353/