logo

UK warns of Chinese hackers using proxy networks to evade detection

ID: 6deed2ff-2398-566a-ac2c-885ffbdb5feb

STIX ID: report--6deed2ff-2398-566a-ac2c-885ffbdb5feb

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2026-04-23

Date Updated: 2026-04-23

Author: Sergiu Gatlan

...
...

The UK NCSC and international partners warn that China-linked threat actors increasingly route malicious activity through vast botnets of compromised SOHO routers and IoT devices to mask origin and evade detection. The advisory highlights large-scale operations such as Raptor Train (over 260,000 infected devices) tied to Flax Typhoon and KV-Botnet used by Volt Typhoon, notes FBI disruption activities, outlines targeted sectors (military, government, telecoms, education, DIB, IT), and urges defenders to adopt multifactor authentication, dynamic threat feeds, allowlists/zero-trust controls, and device hygiene.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.