The FBI Says Your Router Is Helping Russian Hackers

But there’s one simple thing you can do to fix it.

Alexei Druzhinin/Planet Pix via ZUMA

Fight disinformation: Sign up for the free Mother Jones Daily newsletter and follow the news that matters.

The Federal Bureau of Investigation made an announcement on Friday that went a bit under the radar, but is huge: Russian hackers devised a sophisticated malware system that has infected hundreds of thousands of internet routers in the United States as part of its ongoing effort to undermine American democracy.

“Foreign cyber actors have compromised hundreds of thousands of home and office routers and other networked devices worldwide,” the agency wrote on a public service announcement released on Friday. “The malware is able to perform multiple functions, including possible information collection, device exploitation, and blocking network traffic.”

The agency called the size and scope of the problem “significant.”

The FBI says that the Russian hacker group “Fancy Bear” is behind the new malware. Fancy Bear is reportedly directed by Russia’s military intelligence agency and is responsible for hacking into the Democratic National Committee ahead of the 2016 presidential election. An estimated 500,000 routers in at least 54 countries were infected with the malware. And devices from major router manufacturers including Linksys, MikroTik, Netgrear, and TP-Link were all affected.

The FBI has since seized a domain name associated with Fancy Bear, www.toknowall.com, which it says was a critical part of the malware’s “command-and-control infrastructure,” according to the New York Times

“This court-ordered seizure will assist in the identification of victim devices and disrupts the ability of these hackers to steal personal and other sensitive information and carry out disruptive cyberattacks,” Scott W. Brady, United States attorney for the Western District of Pennsylvania, said in the statement to the Times

Worried that you’re router’s been compromised? The FBI recommend several steps, including rebooting it, disabling remote management settings, and using a stronger password, especially when encryption is enabled.

Fact:

Mother Jones was founded as a nonprofit in 1976 because we knew corporations and billionaires wouldn't fund the type of hard-hitting journalism we set out to do.

Today, reader support makes up about two-thirds of our budget, allows us to dig deep on stories that matter, and lets us keep our reporting free for everyone. If you value what you get from Mother Jones, please join us with a tax-deductible donation today so we can keep on doing the type of journalism 2024 demands.

payment methods

Fact:

Today, reader support makes up about two-thirds of our budget, allows us to dig deep on stories that matter, and lets us keep our reporting free for everyone. If you value what you get from Mother Jones, please join us with a tax-deductible donation today so we can keep on doing the type of journalism 2024 demands.

payment methods

We Recommend

Latest

Sign up for our free newsletter

Subscribe to the Mother Jones Daily to have our top stories delivered directly to your inbox.

Get our award-winning magazine

Save big on a full year of investigations, ideas, and insights.

Subscribe

Support our journalism

Help Mother Jones' reporters dig deep with a tax-deductible donation.

Donate