Article 5SHWK Thousands of AT&T customers in the US infected by new data-stealing malware

Thousands of AT&T customers in the US infected by new data-stealing malware

by
Dan Goodin
from Ars Technica - All content on (#5SHWK)
att-building-800x534.jpeg

Enlarge (credit: Getty Images)

Thousands of networking devices belonging to AT&T Internet subscribers in the US have been infected with newly discovered malware that allows the devices to be used in denial-of-service attacks and attacks on internal networks, researchers said on Tuesday.

The device model under attack is the EdgeMarc Enterprise Session Border Controller, an appliance used by small- to medium-sized enterprises to secure and manage phone calls, video conferencing, and similar real-time communications. As the bridge between enterprises and their ISPs, session border controllers have access to ample amounts of bandwidth and can access potentially sensitive information, making them ideal for distributed denial of service attacks and for harvesting data.

Researchers from Qihoo 360 in China said they recently spotted a previously unknown botnet and managed to infiltrate one of its command-and-control servers during a three-hour span before they lost access.

Read 11 remaining paragraphs | Comments

index?i=wd4xlESv1Ko:_F0ALv1FrNc:V_sGLiPB index?i=wd4xlESv1Ko:_F0ALv1FrNc:F7zBnMyn index?d=qj6IDK7rITs index?d=yIl2AUoC8zA
External Content
Source RSS or Atom Feed
Feed Location http://feeds.arstechnica.com/arstechnica/index
Feed Title Ars Technica - All content
Feed Link https://arstechnica.com/
Reply 0 comments