← Back to Feed
APT28 exploit routers to enable DNS hijacking operations
April 7, 2026 · NCSC UK · Severity: HIGH
APT28 exploit routers to enable DNS hijacking operations. Russian cyber actor APT28 exploit vulnerable routers to hijack DNS, enabling adversary‑in‑the‑middle attacks and theft of passwords and authentication tokens. Security teams are urged to prioritize detection and response measures against this threat.
Key Takeaways
- Critical vulnerability enables remote code execution; immediate patching is strongly recommended for affected systems.
- High severity threat demands urgent attention from security teams to prevent data loss and system compromise.
- Timely patch management and vulnerability prioritization reduce the window of exposure to known exploits.