MalwareBleeping Computer
8.0 — CRITICAL
Chinese hackers develop LONGLEASH malware to expand ORB network
Chinese hackers tracked as 'UAT-7810' are actively evolving their malware to expand their Operational Relay Box (ORB) network by compromising internet-facing networking devices, primarily unpatched Ruckus routers. [...]
🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview
Chinese hackers, tracked as 'UAT-7810', have developed LONGLEASH malware to expand their Operational Relay Box (ORB) network by compromising unpatched Ruckus routers and other internet-facing devices, allowing them to proxy network traffic through regional devices.
⚙️Technical Details
Affected Systems
Ruckus routersASUS AiCloud routers
Attack Vectors
Exploiting known (n-day) vulnerabilities in Ruckus routersExploiting known (n-day) vulnerability in ASUS AiCloud routers
💥Impact Assessment
Severity: High
Who Is at Risk
Organizations with unpatched Ruckus routers and ASUS AiCloud routers, particularly those in the telecommunications sector.
🛡️Recommended Actions
1Ensure all Ruckus routers and ASUS AiCloud routers are patched with the latest security updates
2Implement network segmentation to limit lateral movement in case of a breach
3Monitor for suspicious activity on internet-facing devices and implement intrusion detection systems
📦Affected Products
Ruckus routersASUS AiCloud routers
Read the full article
This is a curated summary. The complete article is available at Bleeping Computer.
