• Latest
  • Trending
  • All
  • Industry
  • Compliance
  • Global Trade
  • Industry
  • Sustainability & Ethics
  • Video
  • Security & Risk
4.2-Million-Internet-Hosts-Hijacked-via-Vulnerabilities-in-Tunneling-Protocols

4.2 Million Internet Hosts Hijacked via Vulnerabilities in Tunneling Protocols

01/16/2025
Trump Extends Tariff Deadline for 14 Countries Until August

Trump Extends Tariff Deadline for 14 Countries Until August

07/08/2025
Innovative Filtrex Techno Engineering India Pvt. Ltd. Earns Nomination for Go Global Awards 2025

Innovative Filtrex® Expands Global Presence with Sustainable Engineering and Clean Energy Solutions

07/07/2025
Innovative Filtrex Techno Engineering India Pvt. Ltd. Earns Nomination for Go Global Awards 2025

Innovative Filtrex Techno Engineering India Pvt. Ltd. Earns Nomination for Go Global Awards 2025

07/07/2025
Q2 U.S. Auto Sales Grow, While Tariffs Threaten Higher Prices

Q2 U.S. Auto Sales Grow, While Tariffs Threaten Higher Prices

07/03/2025
Rising Import Costs Put Pressure on U.S. Restaurants Amid Tariffs

Rising Import Costs Put Pressure on U.S. Restaurants Amid Tariffs

07/03/2025
Vietnam Trade Deal Secured as U.S. Prepares for Tariff Changes

Vietnam Trade Deal Secured as U.S. Prepares for Tariff Changes

07/03/2025
U.S. and Vietnam Reach Trade Agreement Including New 20% Tariff on Imports

U.S. and Vietnam Reach Trade Agreement Including New 20% Tariff on Imports

07/03/2025
Uncertainty Grows as July 9 Tariff Deadline Nears Amid Ongoing Trade Talks

Uncertainty Grows as July 9 Tariff Deadline Nears Amid Ongoing Trade Talks

07/03/2025
Two Star Safaris Ltd: Six Years of Growth, Impact, and Global Reach

Two Star Safaris Ltd: Six Years of Growth, Impact, and Global Reach

07/04/2025
Two Star Safaris Limited Nominated for 2025 Go Global Awards in London

Two Star Safaris Limited Nominated for 2025 Go Global Awards in London

07/02/2025
Vidushi Infotech Powers Global Growth with AI-Driven IT Solutions and 22 Years of Expertise

Vidushi Infotech SSP Pvt. Ltd. Nominated for Go Global Awards 2025 – Set to Join Global Tech Leaders in London

07/02/2025
Vidushi Infotech Powers Global Growth with AI-Driven IT Solutions and 22 Years of Expertise

Vidushi Infotech Powers Global Growth with AI-Driven IT Solutions and 22 Years of Expertise

07/04/2025
supplychainreport
Tuesday, July 8, 2025
  • Home
  • Industry
    • Supply Chain
    • Logistics & Transportation
    • Importing & Exporting
    • Manufacturing
    • Warehousing & Distribution
  • Compliance
    • Supply Chain Transparency
    • Anti-Money Laundering (AML)
    • Know Your Customer (KYC)
    • Risk Management
    • Export Controls
    • Sanctions
  • Global Trade
    • Market Trends
    • Economic Indicators
    • Sourcing
    • Trade Policies
    • International Relations
    • Trade Agreements
    • Tariffs & Duties
    • Import/Export Statistics
  • Luxury Goods
  • Industry
    • Blockchain in Supply Chain
    • Importing & Exporting
    • Automation & Robotics
    • Artificial Intelligence in Trade
    • Data & Analytics
  • Sustainability & Ethics
    • Green Supply Chains
    • Sustainable Logistics
    • Ethical Sourcing
    • Corporate Social Responsibility
    • Environmental Policies
  • Security & Risk
    • Cybersecurity in Trade
    • Fraud & Scams
    • Risk Mitigation
    • Security Protocols
    • Data Protection
  • ITC News
    • ITC Featured Members
    • ITC Business Councils Highlights
  • Events
    • Upcoming Conferences
    • Upcoming FREE Educational Webinars
No Result
View All Result
supplychainreport
No Result
View All Result

4.2 Million Internet Hosts Hijacked via Vulnerabilities in Tunneling Protocols

by Giezel Garcia
01/16/2025
in Cybersecurity in Trade, Security & Risk

New vulnerabilities discovered in four tunneling protocols have led to the hijacking of 4.2 million internet hosts, including VPN servers, home routers, and enterprise routers, allowing attackers to exploit these devices and access both corporate and home networks.

The vulnerable hosts can be misused as one-way proxies, facilitating anonymous attacks on private networks, according to a blog post from Top10VPN researchers published on January 15. These attacks include new denial-of-service (DoS) techniques and DNS spoofing, which can enable additional forms of cyberattacks such as TCP hijacking, SYN floods, and Wi-Fi attacks.

YOU MAY ALSO LIKE

Merchant International Systems Ltd Nominated for 2025 Go Global Awards in London

Merchant International Systems Limited Recognized for Excellence in Safety and Technology Solutions

Researchers noted that the majority of the attacks have been concentrated in Brazil, China, France, Japan, and the United States.

Jason Soroko, senior fellow at Sectigo, explained that these vulnerabilities allow attackers to spoof source addresses and route packets through compromised hosts, making malicious traffic appear legitimate. Soroko emphasized the risk of various attacks this vulnerability enables, including stealthy DDoS, DNS spoofing, unauthorized network access, and potential IoT device infiltration.

“Security and networking teams should ensure that tunneled traffic is only accepted from trusted endpoints,” Soroko advised. “Proper source validation, applying vendor patches, and deploying strict firewall rules can significantly reduce exposure. Strengthening tunneling configurations and ensuring that authentication checks are in place can help prevent attackers from exploiting these protocols for anonymous attacks.”

Trey Ford, chief information security officer at Bugcrowd, noted that tunneling and amplification-based attacks have been a recurring issue for several decades, with a range of protocols targeted over time, including SYN flood DoS attacks in the ’90s, DNS recursion in the early 2000s, and more recently, protocols such as NTP, LDAP, and Memcached.

“Security teams should focus on strengthening edge devices,” Ford recommended. “Devices connected to the internet are vulnerable to unexpected and uninvited traffic. Limiting the scope of where services accept requests and disabling unused services can reduce potential risks.”


Explore supply chain logistics news updates at The Supply Chain Report. Learn more about international trade at ADAMftd.com.

#InternetSecurity #TunnelingProtocols #CyberSecurity #HostHijacking #DataProtection #NetworkVulnerabilities #TechNews

ShareTweet

Subscribe Our Newsletter

Share Your News

Whether it’s a groundbreaking achievement, a heartwarming tale, or an insightful perspective, we want to hear it. Share your news with us, and let’s amplify your voice in the digital symphony of stories.

Submit

A man is riding a bike on a hill.

The Supply Chain Report is your essential daily news website, serving as a trusted source for comprehensive coverage of the complex and ever-evolving global supply chain dynamics. Our expert team delves into the intricacies of international trade, manufacturing, logistics, importing, exporting, and supply chain management; providing in-depth analysis and up-to-date news on the latest trends, disruptions, and technological advancements affecting industries worldwide. From detailed reports on international trade through to insights into procurement strategies and inventory management, we offer valuable content that helps professionals stay informed and make knowledgeable decisions in a fast-paced market.

Each day, we bring you cutting-edge news and expert commentary that dissect significant international trade and supply chain issues Our coverage spans a wide array of sectors including manufacturing, retail, healthcare, food, consumer goods, and technology, ensuring that no matter your field, you have the strategic information needed to navigate the challenges and opportunities of today’s supply chain landscape. By synthesizing complex data and presenting actionable insights, The Supply Chain Report empowers business leaders, policymakers, and logistics professionals to optimize their operations and drive forward with confidence in an interconnected world.

Connect With Us

  • About
  • Events
  • Privacy Policy
  • Contact Us

© 2024 International Centre for Trade Transparency Limited. Incorporated in the United Kingdom.

No Result
View All Result
  • Home
  • Industry
    • Supply Chain
    • Logistics & Transportation
    • Importing & Exporting
    • Manufacturing
    • Warehousing & Distribution
  • Compliance
    • Supply Chain Transparency
    • Anti-Money Laundering (AML)
    • Know Your Customer (KYC)
    • Risk Management
    • Export Controls
    • Sanctions
  • Global Trade
    • Market Trends
    • Economic Indicators
    • Sourcing
    • Trade Policies
    • International Relations
    • Trade Agreements
    • Tariffs & Duties
    • Import/Export Statistics
  • Luxury Goods
  • Industry
    • Blockchain in Supply Chain
    • Importing & Exporting
    • Automation & Robotics
    • Artificial Intelligence in Trade
    • Data & Analytics
  • Sustainability & Ethics
    • Green Supply Chains
    • Sustainable Logistics
    • Ethical Sourcing
    • Corporate Social Responsibility
    • Environmental Policies
  • Security & Risk
    • Cybersecurity in Trade
    • Fraud & Scams
    • Risk Mitigation
    • Security Protocols
    • Data Protection
  • ITC News
    • ITC Featured Members
    • ITC Business Councils Highlights
  • Events
    • Upcoming Conferences
    • Upcoming FREE Educational Webinars

© 2024 International Centre for Trade Transparency Limited. Incorporated in the United Kingdom.