skip to content
Decrypt LOL

Get Cyber-Smart in Just 5 Minutes a Week

Decrypt delivers quick and insightful updates on cybersecurity. No spam, no data sharing—just the info you need to stay secure.

Read the latest edition

China's Volt Typhoon Reestablishes Botnet After US Disruption

/ 1 min read

China’s Volt Typhoon Rebuilds Botnet After US Takedown. Nine months after a US-led disruption, the Chinese state-sponsored group Volt Typhoon is reportedly more sophisticated and determined, having reestablished its botnet using compromised legacy routers. Security analysts from SecurityScorecard have noted that the group is exploiting vulnerabilities in outdated Cisco and Netgear devices to facilitate covert operations targeting critical national infrastructure. With new command servers and advanced obfuscation techniques, Volt Typhoon poses a significant threat, particularly to governmental and critical infrastructure sectors, which remain vulnerable due to reliance on legacy technology.