semiconductor / news / / TechRadar
Russian state-sponsored threat actors are targeting poorly protected Small Office/Home Office (SOHO) devices.
Forest Blizzard (APT28) is using DNS hijacking at scale via compromised SOHO devices.
KEY POINTS
- Over 200 organizations and 5,000 consumer devices have been impacted, targeting multiple critical sectors.
- Attackers reroute DNS traffic to infrastructure they control, enabling surveillance and AiTM attacks.
- This is the first time Microsoft observed Forest Blizzard using DNS hijacking to support AiTM of TLS connections.
COMPANIES
Summarized by Newsio from TechRadar. How we summarize →