Texas sues TP-Link over Chinese hacking risks, user deception
好的,我现在需要帮用户总结这篇文章的内容,控制在100字以内。首先,我得仔细阅读文章,抓住主要信息。 文章讲的是得克萨斯州起诉TP-Link,指控他们虚假宣传路由器的安全性,并且允许中国支持的黑客利用固件漏洞入侵用户设备。此外,TP-Link被指称产品实际上来自中国,却声称“越南制造”,这可能涉及国家安全问题。 接下来,我需要把这些要点浓缩到100字以内。要注意不要使用“文章内容总结”之类的开头,直接描述即可。 可能的结构是:得克萨斯州起诉TP-Link,指控其虚假宣传安全性和产品来源,并提到固件漏洞和数据收集的问题。同时提到TP-Link否认指控,并有美国政府调查的情况。 现在试着组织语言:得克萨斯州起诉TP-Link虚假宣传路由器安全性,并隐瞒中国供应链。指控称其产品存在固件漏洞,被中国黑客利用。同时,TP-Link被指非法收集用户数据。公司否认指控,美国政府正在调查。 这样大约在100字左右,涵盖了主要信息。 </think> 得克萨斯州起诉TP-Link虚假宣传路由器安全性,并隐瞒中国供应链。指控称其产品存在固件漏洞,被中国黑客利用。同时,TP-Link被指非法收集用户数据。公司否认指控,美国政府正在调查。 2026-2-19 12:45:18 Author: www.bleepingcomputer.com(查看原文) 阅读量:8 收藏

TP-Link

Texas sued networking giant TP-Link Systems, accusing the company of deceptively marketing its routers as secure while allowing Chinese state-backed hackers to exploit firmware vulnerabilities and access users' devices.

The lawsuit follows an investigation launched in October and claims that TP-Link misled buyers by labeling its products "Made in Vietnam" while sourcing nearly all components from China. According to Paxton, this is important because Chinese law can compel companies with Chinese supply-chain ties to cooperate with government intelligence requests and hand over user data.

"This week, my office is launching a coordinated series of actions against CCP-aligned companies to send a clear message that in the Lone Star State we will always put Texas and America First," said Texas Attorney General Paxton. "TP Link will face the full force of the law for putting Americans' security at risk. Let this serve as a clear warning to any Chinese entity seeking to compromise our nation's security."

Wiz

The suit points to a history of security failures, including firmware vulnerabilities exploited by Chinese hacking groups and the company's routers being used in a large-scale credential-theft botnet later linked to password-spray attacks.

As Microsoft reported in October 2024, this botnet (tracked as Quad7, CovertNetwork-1658, or xlogin) was built from hacked home and small-business routers (primarily TP-Link devices) and operated by Chinese threat actors.

"Despite its claims of privacy and security, TP Link's products have been used by People's Republic of China's ("PRC") state-sponsored hacking entities to launch multiple cyber-attack operations against the United States," Paxton added.

"With nearly all of its products' parts imported from China, TP Link's deliberate deception towards Texans regarding the nationality, privacy, and security capabilities of its networking devices is not just illegal—it is also a national security threat that enables the secret surveillance and exploitation of Texas consumers."

Paxton now seeks civil monetary penalties and injunctions that would require TP-Link to disclose the Chinese origins of its devices and stop collecting consumer data without informed consent.

While a TP-Link spokesperson was not immediately available for comment when contacted by BleepingComputer for comment, TP-Link told The Record that these allegations are "without merit" and that neither the Chinese government nor the Chinese Communist Party (CCP) exercises control over the company, its products, or user data, and added that all U.S. user data is stored on domestic Amazon Web Services servers.

Federal agencies have previously flagged actively exploited flaws in TP-Link hardware, and CISA currently lists half a dozen TP-Link security flaws in its catalog of vulnerabilities known to be exploited in attacks.

In December 2024, the U.S. government was also reportedly considering banning TP-Link routers, with the U.S. Departments of Justice, Commerce, and Defense investigating the issue, and at least one Commerce Department office having subpoenaed the company.

More recently, in December 2025, the Texas Attorney General sued five major television manufacturers (i.e., Sony, Samsung, LG, and China-based companies Hisense and TCL Technology Group Corporation), accusing them of secretly and illegally collecting their users' data using Automated Content Recognition (ACR) technology.

tines

The future of IT infrastructure is here

Modern IT infrastructure moves faster than manual workflows can handle.

In this new Tines guide, learn how your team can reduce hidden manual delays, improve reliability through automated response, and build and scale intelligent workflows on top of tools you already use.


文章来源: https://www.bleepingcomputer.com/news/security/texas-sues-tp-link-over-chinese-hacking-risks-user-deception/
如有侵权请联系:admin#unsafe.sh