Wikileaks yesterday published its latest round of allegedly leaked CIA documents, detailing aspects of the U.S. agency's "Cherry Blossom" firmware modification program, which uses modified versions of router firmware to turn networking devices into surveillance tools.

The document is the latest in WikiLeaks' "Vault 7" series of publications on CIA hacking methods. Previous leaks have detailed the agency's targeting of iOS devices and Macs, while this manual relates specifically to network routers: Once installed, the Cherry Blossom program can be used to monitor internet traffic, crawl for passwords, and redirect the target user to a particular website.

wikileaks cia
The manual also describes how CIA agents might install the modified firmware. "In typical operation, a wireless device of interest is implanted with Cherry Blossom firmware, either using the Claymore tool or via a supply chain operation." While documents have not been made public that detail the "Claymore" tool, the latter tactic refers to the practice of intercepting the target device somewhere between the factory and the end user.

The document lists several network products as susceptible to its hacking protocol, including devices from Asus, Belkin, Buffalo, Dell, DLink, Linksys, Motorola, Netgear, Senao, and US Robotics. Apple's AirPort networking equipment does not appear on the list, however.

The CIA has struggled to penetrate Apple's network router hardware in the past due to a combination of the company's robust encryption and its use of proprietary hardware. Previous Harpy Eagle documents published by Wikileaks show apparently unsuccessful efforts to "gain root access on an Apple Airport Extreme and Time Capsule via local and/or remote means to install a persistent rootkit into the flash storage of the devices".

The Cherry Blossom document dates to 2012, so it's likely CIA methods have moved on in an effort to keep up to date with changing networking hardware. In a response the same day that the iOS device hacking efforts came out, Apple said that many of the vulnerabilities in that leak were already patched. Apple reportedly ceased development of its AirPort networking devices last year.

Note: Due to the political nature of the discussion regarding this topic, the discussion thread is located in our Politics, Religion, Social Issues forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.

Top Rated Comments

Sunny1990 Avatar
91 months ago
Making it harder and harder for the private info to be tapped into. Gotta love Apple for this.
Score: 10 Votes (Like | Disagree)
Glassed Silver Avatar
91 months ago
Why is the government doing this? I guess I want to know: is it still okay for me to say in front of Echo Dot or write in my emails that President Trump looks like he's wearing an orange ferret on his head? Or am I living in Communist China now?
The funny truth is that many of the things the US warned its population about during the Cold War whilst reminding people that the superior West is free and ripe of opportunities are now - or have been for a very long time - part of their own toolkit and that of many other nations who are "friends" of the US, the West or simply try to strike good trade deals with us.

If you like liberty and privacy the times are rough.

Glassed Silver:ios
Score: 8 Votes (Like | Disagree)
haruhiko Avatar
91 months ago
But Apple doesn't update them anymore and has ignored the whole mesh router development. :-(
Score: 5 Votes (Like | Disagree)
Solomani Avatar
91 months ago
Making it harder and harder for the private info to be tapped into. Gotta love Apple for this.
No. Like I posted above, there are credible reports that Apple is already dropping its (AirPort) router business. That means that in the future, all Apple servers and networks will have to rely on routers made by those other companies like Dell, Cisco, Belkin, Linksys, etc.
Score: 5 Votes (Like | Disagree)
Solomani Avatar
91 months ago
So what's the best router for privacy?
The Google-Facebook router is best!


Just kidding. :p
Score: 4 Votes (Like | Disagree)
Solomani Avatar
91 months ago
The CIA has struggled to penetrate Apple's network router hardware in the past due to a combination of the company's robust encryption and its use of proprietary hardware.
Oh boy…. I'm vindicated in another thread where I opined that Apple abandoning its AirPort routers is a mistake.

It's right here, post #34.
https://forums.macrumors.com/threads/eero-reveals-2nd-gen-router-wi-fi-extending-beacon-internet-security-service-and-ios-app-update.2050788/page-2#post-24686814
Score: 4 Votes (Like | Disagree)

Popular Stories

new best buy blue

Best Buy's Memorial Day Sale Has Record Low Prices on iPads, MacBooks, and Much More

Friday May 24, 2024 7:12 am PDT by
Best Buy today kicked off its Memorial Day weekend sale, and it has some of the best prices we've tracked in weeks on iPads and MacBooks. Specifically, you'll find record low prices on the 5th generation iPad Air, iPad mini 6, M2 MacBook Air, and M3 MacBook Pro. Note: MacRumors is an affiliate partner with Best Buy. When you click a link and make a purchase, we may receive a small payment,...
macOS 15 Feature

macOS 15 System Settings to Get Design Overhaul

Thursday May 23, 2024 12:51 pm PDT by
With the macOS 15 update that is set to debut at WWDC in June, Apple plans to rearrange "menus and app UIs," according to a report from AppleInsider. The System Settings app, which was last updated with macOS Ventura, will get one of the biggest updates. With macOS Ventura, Apple renamed the System Preferences app to System Settings, introducing a design similar to the Settings app on the...
6chatgpt mac app

5 Reasons to Use OpenAI's ChatGPT App for Mac

Thursday May 23, 2024 6:07 am PDT by
On May 13, OpenAI during its Spring Update announced that it would be releasing a desktop ChatGPT app for the Mac in the "coming weeks," and said that ahead of a wider launch it had started rolling out the app to some ChatGPT Plus subscribers. Subscribe to the MacRumors YouTube channel for more videos. After testing the app for a few days, we thought it was worth sharing some reasons why...
iOS 17

Apple Sheds More Light on iOS 17.5 Bug That Resurfaced Deleted Photos

Friday May 24, 2024 2:36 am PDT by
Last week, some iPhone users reported that Apple's iOS 17.5 update had introduced a bug that caused old photos that were deleted to reappear in the Photos app. Apple quickly released an iOS 17.5.1 update to fix the issue, but for many users, its explanation of "database corruption" in the release notes was all too brief, and did little to allay concerns about the privacy of their data. Apple ...