„KRIEG IN DER UKRAINE: Dramatische Bilder! Panzer überrollt fahrendes Auto – Fahrer überlebt!“
„282.359 Aufrufe
26.02.2022“
Kategorie: Verschiedenes
-
Sophisticated hackers are targeting these Zyxel firewalls and VPNs
„Sophisticated hackers are targeting these Zyxel firewalls and VPNs“
„Written by Liam Tung, Contributor
on June 25, 2021 | Topic: SecurityZyxel, a manufacturer of enterprise routers and VPN devices, has issued an alert that attackers are targeting its devices and changing configurations to gain remote access to a network.
In a new support note, the company said that a „sophisticated threat actor“ was targeting Zyxel security appliances with remote management or SSL VPN enabled.
(Virtual private networks are essential to staying safe online — especially for remote workers and businesses.)
The attacks affect organizations using Unified Security Gateway (USG), ZyWALL, the USG FLEX combined firewall and VPN gateway, Advanced Threat Protection (ATP) firewalls, and VPN series devices running its ZLD firmware.
SEE: Network security policy (TechRepublic Premium)
„The threat actor attempts to access a device through WAN; if successful, they then bypass authentication and establish SSL VPN tunnels with unknown user accounts, such as“zyxel_sllvpn“, „zyxel_ts“, or „zyxel_vpn_test“, to manipulate the device’s configuration. We took action immediately after identifying the incident,“ Zyxel noted.
This seems to suggest that the attackers are using hardcoded accounts to access the devices remotely.
Earlier this year, researchers found a hardcoded admin backdoor account in one of Zyxel’s firmware binaries, which left 100,000 internet-exposed firewalls and VPNs.“
„Zyxel notes that firewalls may be affected if users experience issues accessing the VPN, or routing, traffic and login issues. Other signs include unknown configuration parameters and password problems.
Zyxel warns admins to delete all unknown admin and user accounts that have been created by the attackers. It also advises them to delete unknown firewall rules and routing policies.“
„“Based on our investigation so far, we believe maintaining a proper security policy for remote access is currently the most effective way to reduce the attack surface,“ Zyxel said.
It recommends disabling HTTP and HTTPS services from the WAN side. For those who need to manage devices from the WAN side, it recommends restricting access to trusted source internet address and enabling GeoIP filtering. It also emphasizes that admins need to change passwords and set up two-factor authentication.“
„The attacks on Zyxel devices follows a string of similar attacks on a range of VPN devices, which make a handy entry point to a corporate network for remote attackers to gain persistent access. The US Cybersecurity and Infrastructure Security Agency warned in April that attackers were targeting vulnerabilities in Pulse Secure Connect VPNs.“
Source: https://www.zdnet.com/article/sophisticated-hackers-are-targeting-these-zyxel-firewalls-and-vpns/
-
Super Soldier Talk – Tony Rodrigues – Slave in the SSP
„Super Soldier Talk – Tony Rodrigues – Slave in the SSP“
„Tony Rodigues spent 20 years in the ssp. He was taken at the age of 10 and taken to a China Lake Naval Base and then Vashion Island under CIA’s Project Grillflame MKULTRA training program. From there he was taken to the moon, Mars, and then the Ceres.“
Topic related history content:
https://conspiracyrevelation.com/2019/07/25/tony-rodrigues-a-survivor-of-child-trafficking-sexual-slavery-secret-space-program/https://conspiracyrevelation.com/2019/03/10/4-life-on-mars-feat-tony-rodrigues-breakaway-season-1/
https://conspiracyrevelation.com/2020/07/17/der-mond-und-ceres-sind-ganz-anders-als-du-denkst/
More:
https://papers.ssrn.com/sol3/papers.cfm?abstract_id=3286134
„Kenji Miyamoto
Independent
Date Written: November 11, 2018
Abstract
STARGATE is a code name for the aggregation of various programs to develop the remote viewing capability. It was originally assumed to be the paranormal phenomenon, though attracting academic interests in the early 1970s. The Stanford Research Institute, SRI, obtained the cooperation from several psychics and started the serious research on this capability, which was eventually subsidized by the US Defense outlets. Their main program was called “GRILL FLAME” purposed to train the soldier to possess the remote viewing capability… and ceased until the early 1990s. It was declassified with their earlier experiments supported partly by the CIA as well, though the majority was conducted under the US Defense involvement. …due to their focus on the remote viewing rather than on the overall phenomenon that the brain is affected by the external electromagnetic stimuli. This extrasensory function was confirmed through the various studies in the early 1970s and there were several implications that the CIA realized the overall phenomenon could be deployed to their information gathering rather than focusing on the remote viewing.Keywords: STARGATE“
https://nsarchive2.gwu.edu/NSAEBB/NSAEBB534-DIA-Declassified-Sourcebook/documents/DIA-21.pdf







