Categories: HackingIntelligence

NSA intercepts US-made Routers to implant surveillance backdoor

Journalist Glenn Greenwald published the last revelation of NSA surveillance, the agency tampers with US-made internet routers destined for foreign markets.

A new collection of documents leaked by Edward Snowden claims the NSA intercepted US-made routers bound for export and to implant backdoor in their circuits.

The allegations have been published by the journalist Glenn Greenwald, which has recently published the book No Place to Hide: Edward Snowden, the NSA, and the U.S. Surveillance State on the topic based on the huge quantity of documents in the Snowden’s archive.

The document dated June 2010 from the head of the NSA’s Access and Target Development department reveals that the Intelligence Agency either receives or intercepts servers, network appliances and other devices for foreign customers.

An article published in The Guardian reports the NSA tampers with US-made internet routers deploying covertly implanting interception tools in US servers heading overseas.

It’s curious that US Intelligence many times has accused Chinese technology manufacturers to implant secret backdoor in their products, it was the case of Huawei, ZTE  and Lenovo.

“The agency then implants backdoor surveillance tools, repackages the devices with a factory seal and sends them on. The NSA thus gains access to entire networks and all their users. The document gleefully observes that some “SIGINT tradecraft… is very hands-on (literally!)”.

Eventually, the implanted device connects back to the NSA. The report continues: “In one recent case, after several months a beacon implanted through supply-chain interdiction called back to the NSA covert infrastructure. This call back provided us access to further exploit the device and survey the network.”

It is quite possible that Chinese firms are implanting surveillance mechanisms in their network devices. But the US is certainly doing the same.” writes Glenn Greenwald.

The report could have a serious impact on US companies which export technology, Greenwald argues that the NSA has arranged a smear campaign on Chinese competitors to capture its market for US manufactures and to deploy spy implants on a large scale.

The NSA chief Admiral Mike Rogers, during a recent conference in Washington, has defended the NSA surveillance programs, defining them as legal and indispensable for Homeland security.
Rogers announced that he will meet counterparts of foreign countries to rebuild trust and reinforce the cooperation against cyber threats.
“It is by design that I have tried to start a series of engagements with a broader and perhaps more different groups than we have traditionally done,”  “The dialogue to date that we have had for much of the last nine months or so from my perspective, I wish was a little bit broader, had a little more context to it, and was a little bit more balanced.” He told the Reuters Cybersecurity Summit.

Pierluigi Paganini

(Security Affairs –  NSA, routers, surveillance)  

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

Fintech firm Figure disclosed data breach after employee phishing attack

Fintech firm Figure confirmed a data breach after hackers used social engineering to trick an…

20 hours ago

U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and…

21 hours ago

Suspected Russian hackers deploy CANFAIL malware against Ukraine

A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL…

1 day ago

New threat actor UAT-9921 deploys VoidLink against enterprise sectors

A new threat actor, UAT-9921, uses the modular VoidLink framework to target technology and financial…

2 days ago

Attackers exploit BeyondTrust CVE-2026-1731 within hours of PoC release

Attackers quickly targeted BeyondTrust flaw CVE-2026-1731 after a PoC was released, enabling unauthenticated remote code…

2 days ago

Google: state-backed hackers exploit Gemini AI for cyber recon and attacks

Google says nation-state actors used Gemini AI for reconnaissance and attack support in cyber operations.…

2 days ago

This website uses cookies.