logo

FBI confirms it issued remote kill command to blow out Volt Typhoon's botnet

ID: feae96c0-14d4-5c52-839a-f2bf6ceb4268

STIX ID: report--feae96c0-14d4-5c52-839a-f2bf6ceb4268

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2024-01-31

Date Updated: 2026-04-26

Author: Jessica Lyons Hardcastle

...
...

U.S. authorities say a China-linked APT known as Volt Typhoon deployed the KV Botnet on hundreds of out-of-date Cisco and Netgear SOHO routers in the United States to establish encrypted remote control and pre-position access to communications, energy, transportation, and water sectors; the FBI obtained warrants to infiltrate the botnet, collect non-content node data, and remotely remove the malware, while CISA and the FBI issued an alert urging vendors to fix SOHO router management-interface defects.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.