logo

FBI disrupts Chinese botnet by wiping malware from infected routers

ID: 9783d78b-8128-5289-a026-f002d4a63b7e

STIX ID: report--9783d78b-8128-5289-a026-f002d4a63b7e

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2024-01-31

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

The FBI disrupted the KV-botnet operated by China-linked Volt Typhoon, which had hijacked hundreds of SOHO routers and devices (including Netgear, Cisco RV320/325, DrayTek, and Axis cameras) to hide reconnaissance and exploitation of U.S. critical infrastructure; agents used a court-authorized operation to sever connections, remove the malware and VPN components, and agencies now urge vendors to secure and automate updates for end-of-life devices.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.