#Malware turns home #routers into proxies for #China's #hackers
Following #VPNFilter, new #firmware obscures hackers
Implant is airmware images for #TPLink routers. Well-written C++, however, took pains to implement its functionality in “firmware-agnostic” manner, meaning its trivial to modify it to run on other router models. Using routers and other #IOT devices to conceal control servers and covertly proxy traffic is among the oldest tricks in threat actor tradecraft.
https://arstechnica.com/information-technology/2023/05/malware-turns-home-routers-into-proxies-for-chinese-state-sponsored-hackers/