Tech Wavo
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock
Tech Wavo
No Result
View All Result

Asus routers across the globe hit by suspected Chinese cyberattack – here’s what we know

Tech Wavo by Tech Wavo
November 19, 2025
in Computers
0



  • Thousands of expired ASUS routers hijacked into “Operation WrtHug” cyber-espionage botnet
  • Chinese state-sponsored actors exploit multiple n-day flaws, using 100-year TLS certificates
  • Compromised routers form relay network, mostly in Taiwan and Southeast Asia

Thousands of expired ASUS routers are being hijacked and assimilated into a botnet being used as infrastructure for cyber-espionage operations, experts have warned.

Security researchers SecurityScorecard, together with Asus, discovered and reported the malicious campaign, claiming a group of Chinese state-sponsored threat actors have been leveraging multiple vulnerabilities in a number of ASUS routers to deploy a unique, self-signed certificate.

The vulnerabilities being abused include CVE-2023-41345, CVE-2023-41346, CVE-2023-41347, CVE-2023-41348, CVE-2024-12912, and CVE-2025-2492. These are all n-day flaws, meaning they’ve been around for relatively long. However, since the targeted endpoints reached their end-of-life, most never received the update, or simply weren’t patched by their users.


Best picks for you

Chinese activity

Here is the list of the models being assimilated into the botnet:

4G-AC55U
4G-AC860U
DSL-AC68U
GT-AC5300
GT-AX11000
RT-AC1200HP
RT-AC1300GPLUS
RT-AC1300UHP

The number of hijacked routers is being counted “in the thousands”, as per the report. All of them share a unique, self-signed TLS certificate, with a 100-year expiration date.

“This unusually long-lived certificate is a critical indicator of compromise and points to a level of coordination that reflects careful and calculated espionage,” the researchers said.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

The infected routers become part of a large operational relay network, similar to other China-linked Operational Relay Box (ORB) campaigns.

The routers become nodes that let the actors route their own espionage traffic through innocent people’s routers, hide their real origin when conducting intrusions, build resilient, globally distributed C2 infrastructure and, ultimately, stage attacks against high-value geopolitical targets.

The vast majority of the compromised routers are located in Taiwan and Southeast Asia, which perfectly aligns with Chinese national interests. No compromised routers were found in mainland China, it was said.

The campaign is dubbed “Operation WrtHug”, since the devices are running firmware called AsusWRT.


Best antivirus software header

The best antivirus for all budgets

Our top picks, based on real-world testing and comparisons

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Previous Post

Netflix lands a deal with MLB to air select live baseball games

Next Post

Warner signs AI music licensing deal with Udio

Next Post
Warner signs AI music licensing deal with Udio

Warner signs AI music licensing deal with Udio

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Samsung Galaxy Tab A11+ is Best Budget Tablet Deal this Black Friday

by Tech Wavo
November 22, 2025
0
Samsung Galaxy Tab A11+ is Best Budget Tablet Deal this Black Friday
Mobile

Samsung Galaxy devices are highly sought after and Black Friday sales are an opportunity to get one with a great...

Read more

We Tested 6 New AI Features in Google Photos, 4th One Failed and 5th is Impressive

by Tech Wavo
November 22, 2025
0
We Tested 6 New AI Features in Google Photos, 4th One Failed and 5th is Impressive
Gadgets

This section will have ready-made AI templates powered by Nano Banana, which help you to create images instantly based on...

Read more

Limited edition PS5 controllers get massive price cuts in the PlayStation Direct Black Friday sale

by Tech Wavo
November 22, 2025
0
Limited edition PS5 controllers get massive price cuts in the PlayStation Direct Black Friday sale
Computers

The winter sales period is well underway now, and Sony's own offerings are out in the wild - and some...

Read more

How this founder’s unlikely path to Silicon Valley could become an edge in industrial tech

by Tech Wavo
November 22, 2025
0
How this founder’s unlikely path to Silicon Valley could become an edge in industrial tech
Computers

Thomas Lee Young doesn’t sound like your typical Silicon Valley founder. The 24-year-old CEO of Interface, a San Francisco startup...

Read more

Site links

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use

No Result
View All Result
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock