Cyclops Blink Malware

General News

Summary

Multiple cybersecurity agencies from the US and UK released a new joint security advisory detailing their findings of a malware threat tracked as the Cyclops Blink. The same group of hackers also has been tracked as Voodoo Bear, BlackEnergy, and TeleBots, and is estimated to have been active for close to 20 years. The Cyclops Blink appears to be the successor of the previous Sandworm malware known as VPNFilter, which was exposed to the public back in 2018. The techniques used by the Cyclops Blink to embed itself into the infected devices allow it to exploit legitimate firmware update channels. All accounts on the breached systems should be presumed to be compromised, and the affected organizations should implement the necessary steps to disconnect the management interface of the network devices from the Internet.

Classifications

industries
Entertainment
applications
Customer Service & Support

AskAI Classifications

Labels
Cybersecurity Software Anti-Malware Software SaaS Security

Linked Companies

EnigmaSoft
$1M to $5M
WatchGuard
$250M to $500M