U.S. Agencies Warn Against China-Nexus Covert Networks of Compromised Devices
The United States Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with international partners, has issued a cybersecurity advisory warning about the increasing use of covert networks of compromised devices by China-nexus cyber actors. These networks, often referred to as botnets, are primarily composed of compromised Small Office Home Office (SOHO) routers, Internet of Things (IoT), and smart devices. The advisory highlights a shift in tactics, techniques, and procedures (TTPs) by these actors, moving from individually procured infrastructure to large-scale networks of compromised devices. This development poses a significant threat to critical national infrastructure, as these networks are used to route cyber activities and pre-position offensive cyber capabilities. The advisory aims to equip network defenders with the necessary tools to combat these threats.