logo

CISA: Vendors must secure SOHO routers against Volt Typhoon attacks

ID: a12f64f2-9780-564c-83c2-508300cb3a78

STIX ID: report--a12f64f2-9780-564c-83c2-508300cb3a78

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-01-31

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA and the FBI have issued guidance urging SOHO router manufacturers to harden device security against ongoing exploitation—particularly activity attributed to Chinese state-backed group Volt Typhoon—after KV‑botnet operations hijacked routers, VPNs, and firewalls to proxy malicious traffic and target U.S. critical infrastructure; the alert recommends secure web management interfaces, automated updates, local-only WMI access, CVE/CWE disclosure, and incentives for secure product design.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.