Chinese routers pose a hidden spying threat.Is this company’s gadget in your home?

0
6

Researchers at cybersecurity firm VulnCheck have revealed that more than 20 models of Chinese-made routers contain a “backdoor,” a hidden flaw. This backdoor allows the router manufacturer or hackers to gain access to your Wi-Fi and internet connection without your password. This increases the risk of your personal data being stolen or your network being hacked. Furthermore, this backdoor can also access and connect to other devices on the network. According to an ET Telecom report, VulnCheck’s Chief Technology Officer, Jacob Bens, discovered this backdoor. He says that this backdoor is present in many Zbtlink routers sold worldwide under the Zbtlink and Wiflyer brands. The researchers have named it “Endlessdoors,” and it has never been previously reported.
In a blog post on the company’s website, Benes stated that the “backdoor” they discovered automatically connects to a specific IP address and domain registered in China every 35 seconds. He said that whoever controls those domains can gain complete control over the router and possibly even access other devices on the same network.

Benes said that people who order these routers and use them for their small businesses or home offices likely have no idea that they can provide such access. “If it’s in my lab, in my university lab, you’ve invited them directly into your lab and they can roam anywhere on the network at will. Its capabilities are very dangerous,” Benes said.

Benes estimates that there are at least 100,000 such routers installed worldwide. However, he said it’s impossible to determine their exact locations or how many are operational in the United States. Western governments have warned that hackers linked to China could exploit routers and other internet devices in small offices and home offices to gain access to networks and later engage in cyberespionage.

Beijing has consistently denied instigating or carrying out cyber-attacks or cyber-espionage. In March, the Federal Communications Commission announced it was restricting the import of new foreign-made consumer routers due to national security concerns. However, the agency later exempted several non-Chinese companies.

In February, the state of Texas sued TP-Link, a California-based router manufacturer that was spun off from a Chinese company. Allegations were made that the company gave Beijing access to American customers’ devices, a claim the company denied.

This report has further heightened Western concerns about cybersecurity threats associated with Chinese-made networking equipment. Western governments have been warning for years that hackers could misuse such devices. Keeping this in mind, this year American regulators took steps to ban the import of foreign routers.

LEAVE A REPLY

Please enter your comment!
Please enter your name here