Tuesday, March 4, 2014

300,000+ SMB & SOHO routers hacked

From Information Week:

Malware-Lobbing Hackers Seize 300,000 Routers

"Hackers launch scam and malware campaigns after compromising a variety of routers running firmware with known vulnerabilities.

More than 300,000 home and small-office (SOHO) routers have been compromised by hackers and are being used to distribute massive quantities of spam and malware."

The routers provided by your ISP are usually not commercial grade and do not offer the security provided by SMB routers/firewalls available from Cisco, Juniper, CheckPoint, Dell or Barracuda.  Sometimes it's best to invest in a more robust router/firewall solution.

My 2014-12-04 LOTD pointed to two FREE UTM (Universal Threat Management) firewalls from Sophos.  If your SMB is more budget conscious it might be a good idea to take a look at them.  If you can configure your SMB/SOHO firewall/router to block traffic, inbound and out, make sure to add the C&C (command and control) server IP's of 5.45.75.11 and 5.45.75.36 to it's block list.



Any/all products/services are provided for informational purposes only. The author does not endorse any single product.

Use these products/services at your own risk.

No comments:

Post a Comment