Get a Pentest and security assessment of your IT network.

News

SYNful_Knock malicious ROMMON images discovered in the wild

Mandiant firm has spotted more than a dozen Cisco routers running malicious ROMMON firmware images that allow attackers to control targeted devices. CISCO issued an alert to warn enterprise customers about a spike in attacks in which hackers use valid admin credentials on IOS devices to install bogus ROMMON images. The attackers have unrestricted backdoor access to the CISCO router via the console and Telnet using a special password. Researchers found the malicious ROMmon images dubbed SYNful Knock, on 14 Cisco routers located in Ukraine, Philippines, India and Mexico.”]

Source: http://securityaffairs.co/wordpress/40151/cyber-crime/synful_knock-rommon-implants.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought