• Send Us A Tip
  • Calling all Tech Writers
  • Advertise
Sunday, June 15, 2025
  • Login
  • Register
TechStory
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to
No Result
View All Result
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to
No Result
View All Result
TechStory
No Result
View All Result
Home News

Thousands of AT&T customers in the US infected by new data-stealing malware

by Aashish Sehrawat
December 2, 2021
in News
Reading Time: 2 mins read
0
Thousands of AT&T customers in the US infected by new data-stealing malware

Indianapolis - Circa March 2016: AT&T Indiana Headquarters. AT&T Inc. is an American Telecommunications Corporation VI (Indianapolis - Circa March 2016: AT&T Indiana Headquarters. AT&T Inc. is an American Telecommunications Corporation VI, ASCII, 119

TwitterWhatsappLinkedin
@Enlarge

According to a new analysis from a Chinese cybersecurity firm, unpatched, years-old vulnerabilities in networking gear allowed a virulent malware to infect thousands of AT&T users in the United States.

You might also like

Larry Ellison Surges to World’s Second Richest, Overtaking Jeff Bezos and Mark Zuckerberg

Gavin Newsom Accuses Trump Administration of Spreading Fake Protest Images

India Considers Grounding Boeing 787-8 Fleet After Ahmedabad Tragedy

The malware acts as a backdoor, allowing an attacker to break into networks, steal data, and engage in other nefarious activities.

Researchers from security firm Qihoo 360 recently found the infections after infiltrating a previously undisclosed botnet and discovering that it had targeted at least 5,700 AT&T subscribers in the United States. (Botnets are malware-infected device networks that may be managed by a single entity; they’re frequently used to carry out cyberattacks or other coordinated criminal behaviour.)

In this example, the malware appears to have infiltrated customers’ workplace network edge devices using a weakness disclosed in 2017. Malware infection and cyberattacks are regular targets for edge devices, which allow organisations connect their networks to ISPs (in this case, AT&T).

The impacted devices are Ribbon Communications’ (previously known as Edgewater) EdgeMarc Enterprise Session Border Controllers, which are extensively used by small and mid-sized enterprises to manage and protect internal communications such as audio and video calls.

The malware infiltrated these devices through a weakness identified as CVE-2017-6079, for which a fix was reportedly released in 2018, according to Ars Technica. Users, on the other hand, would have been in a lot of trouble if they had not rectified this security weakness.

According to Qihoo 360 experts, the malware in issue is capable of enabling DDoS attacks, port scanning, file management, and the execution of arbitrary commands—basically, an attacker could have a field day with your network.

Theft of data and service disruptions would theoretically be available for the taking.

How many devices have actually been infected is a subject of debate. “It’s not clear if AT&T or EdgeMarc manufacturer Edgewater (now dubbed Ribbon Communications) ever disclosed the vulnerability to users,” according to Ars Technica, which first reported on the findings. The overall extent of the malware outbreak could be far greater than the researchers’ first estimate of 5,700 devices.

The researchers add, “All 5.7k active victims that we saw during the short time window were all geographically located in the United States.” However, they estimate that around 100,000 devices are utilising the same TLS certificate.

“We do not even know how many devices connected with all these IPs could be infected,” they stated, “but we can speculate that just because they belong to the same class of devices, the potential impact is real.”

When contacted for comment, AT&T spokesperson Jim Greer issued the following statement to Gizmodo:

“We previously identified this issue, have taken steps to mitigate it and continue to investigate. We have no evidence that customer data was accessed.”

It wasn’t immediately clear what mitigation measures were available, but if you’re concerned, you should visit the researchers’ page and look at the indicators of exposure.

Tags: AT&TdataleakMalware
Tweet54SendShare15
Previous Post

BOX8 bags $40 million from Tiger Global, rebrands to EatClub Brands

Next Post

Jack Dorsey’s Square is rebranding as Block

Aashish Sehrawat

Recommended For You

Larry Ellison Surges to World’s Second Richest, Overtaking Jeff Bezos and Mark Zuckerberg

by Rounak Majumdar
June 15, 2025
0
Larry Ellison Surges to World’s Second Richest, Overtaking Jeff Bezos and Mark Zuckerberg

Larry Ellison, the co-founder and chairman of Oracle Corporation, has made global headlines by becoming the world’s second richest person, surpassing tech titans Jeff Bezos and Mark Zuckerberg....

Read more

Gavin Newsom Accuses Trump Administration of Spreading Fake Protest Images

by Anochie Esther
June 15, 2025
0
Trump

California Governor Gavin Newsom has accused the Trump administration and the U.S. Department of Defense (DoD) of spreading disinformation in an alleged attempt to justify the military deployment...

Read more

India Considers Grounding Boeing 787-8 Fleet After Ahmedabad Tragedy

by Anochie Esther
June 15, 2025
0
Boeing 787-8

India’s civil aviation sector is in mourning following one of its deadliest air disasters in recent history. An Air India Boeing 787-8 Dreamliner en route to London’s Gatwick...

Read more
Next Post
Thousands of AT&T customers in the US infected by new data-stealing malware

Jack Dorsey's Square is rebranding as Block

Please login to join discussion

Techstory

Tech and Business News from around the world. Follow along for latest in the world of Tech, AI, Crypto, EVs, Business Personalities and more.
reach us at [email protected]

Advertise With Us

Reach out at - [email protected]

BROWSE BY TAG

#Crypto #howto 2024 acquisition AI amazon Apple bitcoin Business China cryptocurrency e-commerce electric vehicles Elon Musk Ethereum facebook flipkart funding Gaming Google India Instagram Investment ios iPhone IPO Market Markets Meta Microsoft News NFT samsung Social Media SpaceX startup startups tech technology Tesla TikTok trend trending twitter US

© 2024 Techstory.in

No Result
View All Result
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to

© 2024 Techstory.in

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?