BetaIT-Hub is in early access — your feedback helps us improve. Use the chat or email [email protected]

News Vulnerability
VulnerabilityCISA·15d ago

Improve Router Hygiene to Protect Against Russian State-Sponsored Targeting

p Russian Government-Sponsored Activity Targets Poorly Configured and Vulnerable Devices Across Critical Sectors /p h2 strong Executive summary /strong /h2 p Russian Federal Security Service (FSB) Center 16 cyber actors continue to exploit poorly configured and vulnerable networking devices worldwide, opportunistically compromising multiple critical infrastructure sector networks. This joint Cybersecurity Advisory (CSA) builds on FBI’s a href="https://www.ic3.gov/PSA/2025/PSA250820" target="_blank" Russian Government Cyber Actors Targeting Networking Devices, Critical Infrastructure /a Public Service Announcement of the decade-plus FSB Center 16 cyber activity by providing additional tactics, techniques, and procedures (TTPs) to enable defenders to more fully understand and counter the threat. [ a href="#Work1" 1 /a ] nbsp; /p p This CSA is being released by the following authoring and co-sealing agencies: nbsp; /p ul type="square" li United States National Security Agency (NSA) /li li United States Cybersecurity and Infrastructure Security Agency (CISA) /li li United States Federal Bureau of Investigation (FBI) /li li United States Department of Defense Cyber Crime Center (DC3) /li li Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) /li li Communications Security Establishment Canada’s (CSE’s) Canadian Centre for Cyber Security (Cyber Centre) /li li New Zealand National Cyber Security Centre (NCSC-NZ) /li li United Kingdom National Cyber Security Centre (NCSC-UK) /li li Czech Republic National Cyber and Information Security Agency (NÚKIB) a href="#Foot1" sup 1 /sup /a nbsp; /li li Danish Defence Intelligence Service (DDIS) a href="#Foot2" sup 2 nbsp; /sup /a /li li Estonian Foreign Intelligence Service (EFIS) a href="#Foot3" sup 3 /sup /a nbsp; /li li Estonian Information System Authority (RIA) a href="#Foot4" sup 4 /sup /a /li li Finnish Defence Intelligence (FDI) a href="#Foot5" sup 5 /sup /a /li li Finnish Security and Intelligence Service (SUPO) a href="#Foot6" sup 6 /sup /a /li li French National Cybersecurity Agency (ANSSI) a href="#Foot7" sup 7 /sup /a /li li Italian External Intelligence and Security Agency (AISE) a href="#Foot8" sup 8 nbsp; /sup /a /li li Italian Internal Intelligence and Security Agency (AISI) a href="#Foot9" sup 9 /sup /a /li li The Military Counterintelligence Service of Poland (SKW) a href="#Foot10" sup 10 nbsp; /sup /a /li li Sweden National Cyber Security Centre (NCSC-SE) a href="#Foot11" sup 11 nbsp; /sup /a /li /ul p The authoring and co-sealing agencies strongly urge device owners and network defenders to take mitigation and remediation actions against Russian government-sponsored exploitation of vulnerable routers. /p figure class="c-figure c-figure--image" role="group" div class="c-figure__media" img loading="lazy" src="https://www.cisa.gov/sites/default/files/styles/large/public/2026-07/Figure%201%20FSB%20Center%2016%20activity%20and%20recommended%20mitigation%20actions.png?itok

Sign in to read the full article

Create a free account to access all news, downloads, and community features

Originally published by CISA

Source: https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-194a

This article is shared for informational purposes. All rights belong to the original author and publisher. If you are the copyright holder and would like this content removed, please contact us.

Shared on IT-Hub by admin