FBI boss says China 'burned down' 260k-device botnet when confronted by Feds
FBI Director Christopher Wray announced the dismantling of a Chinese-backed botnet used for espionage after FBI intervention. The agency has also aided ransomware victims and is pursuing an international treaty against ransom payments.
Read original articleFBI Director Christopher Wray reported that a Chinese-backed group, Flax Typhoon, dismantled its 260,000-device botnet after the FBI intervened. The botnet, controlled by Integrity Technology Group, was used for espionage, particularly targeting U.S. critical infrastructure and Taiwanese networks. The FBI's Cyber National Mission Force, along with the NSA, took control of the botnet's command servers, prompting the Chinese operatives to launch a DDoS attack in an attempt to regain control. Ultimately, they abandoned their infrastructure upon realizing the FBI's involvement. The botnet utilized customized Mirai malware to exploit vulnerabilities in internet-connected devices. Wray also highlighted the FBI's efforts in combating ransomware, noting that the agency has assisted nearly 1,000 organizations in recovering data, saving them over $800 million. He mentioned a case where the FBI helped negotiate a ransom payment down from $450,000 to $50,000 for a cancer treatment center affected by ransomware, marking a shift in the FBI's approach to negotiating with cybercriminals. The White House is pursuing an international treaty to discourage government payments to ransomware attackers.
- Chinese spies dismantled a large botnet after FBI intervention.
- The botnet was used for espionage against U.S. critical infrastructure.
- FBI has helped recover data for nearly 1,000 organizations from ransomware attacks.
- The agency is now involved in negotiating ransom payments for victims.
- The White House is seeking an international treaty against paying cyber ransoms.
Related
Justice Department Disrupts Covert Russian Government-Operated AI Bot Farm
The Justice Department disrupted a Russian social media bot farm spreading disinformation globally. The operation seized domains, exposed technology, and highlighted Russian state involvement. Ongoing investigation and prosecution aim to counter disinformation.
FBI Resumes Communication with Facebook, X and Others on Foreign Disinformation
The FBI has resumed communication with social media platforms to combat foreign disinformation ahead of the presidential election, while new guidelines limit its ability to pressure these platforms.
FBI joint operation takes down Chinese botnet
The FBI dismantled the Flax Typhoon botnet, linked to Chinese state-sponsored cyber activities, targeting critical infrastructure and thousands of devices, while enhancing defenses against foreign cyber threats.
China-state IoT botnet went undetected for four years–until now
The FBI dismantled the Raptor Train botnet, linked to Chinese hackers, involving over 260,000 devices. It targeted government agencies and critical infrastructure, evading detection through reputable IP addresses.
China-state IoT botnet went undetected for four years–until now
The FBI dismantled the Raptor Train botnet, linked to Chinese hackers, involving over 260,000 devices. It targeted government and corporate entities, exploiting reputable IP addresses to evade detection.
Related
Justice Department Disrupts Covert Russian Government-Operated AI Bot Farm
The Justice Department disrupted a Russian social media bot farm spreading disinformation globally. The operation seized domains, exposed technology, and highlighted Russian state involvement. Ongoing investigation and prosecution aim to counter disinformation.
FBI Resumes Communication with Facebook, X and Others on Foreign Disinformation
The FBI has resumed communication with social media platforms to combat foreign disinformation ahead of the presidential election, while new guidelines limit its ability to pressure these platforms.
FBI joint operation takes down Chinese botnet
The FBI dismantled the Flax Typhoon botnet, linked to Chinese state-sponsored cyber activities, targeting critical infrastructure and thousands of devices, while enhancing defenses against foreign cyber threats.
China-state IoT botnet went undetected for four years–until now
The FBI dismantled the Raptor Train botnet, linked to Chinese hackers, involving over 260,000 devices. It targeted government agencies and critical infrastructure, evading detection through reputable IP addresses.
China-state IoT botnet went undetected for four years–until now
The FBI dismantled the Raptor Train botnet, linked to Chinese hackers, involving over 260,000 devices. It targeted government and corporate entities, exploiting reputable IP addresses to evade detection.