UK warns of Chinese hackers using proxy networks to evade detection
ID: 6deed2ff-2398-566a-ac2c-885ffbdb5feb
STIX ID: report--6deed2ff-2398-566a-ac2c-885ffbdb5feb
Feed Name: Bleeping Computer
The UK NCSC and international partners warn that China-linked threat actors increasingly route malicious activity through vast botnets of compromised SOHO routers and IoT devices to mask origin and evade detection. The advisory highlights large-scale operations such as Raptor Train (over 260,000 infected devices) tied to Flax Typhoon and KV-Botnet used by Volt Typhoon, notes FBI disruption activities, outlines targeted sectors (military, government, telecoms, education, DIB, IT), and urges defenders to adopt multifactor authentication, dynamic threat feeds, allowlists/zero-trust controls, and device hygiene.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
