Earlier quoted context omitted.
I suppose I just don't know what exploits could be implanted -- are there forms of rootkits that can go undetected? Or have all of these infected firmware been reverse engineered and the exploit in question cataloged? According to ArsTech in this article ( https://arstechnica.com/information-technology/2018/05/hacke... ) the VPNFilter exploit can survive a reboot - so how can a simple reboot disinfect if the only del…
The attack had three components: infection, sign-in with an initiator head-end, and then second/third stage download. As I understand it, from reading around: The FBI took over an "initiator" headend which bootstraps a simpler infection into the actual threat/attack code. The low level infection can't be removed simply, that demands new code from the maker or an OpenWRT type source. The FBI took over the domain namer…
Thanks for this insightful response. I know a lot of readers would just tell me to do my own research but this was really enlightening.