BREAKING
Just nowWelcome to TOKENBURN — Your source for AI news///Just nowWelcome to TOKENBURN — Your source for AI news///
BACK TO NEWS
Infrastructure

Chinese attackers are pwning your infrastructure to use in attacks, 10 countries warn

Chinese state-linked threat actors (including Integrity Technology Group via Raptor Train) have compromised 200,000+ SOHO routers and IoT devices to build persistent proxy networks for coordinated attacks across multiple countries.

Thursday, April 23, 2026 12:00 PM UTC2 MIN READSOURCE: The RegisterBY sys://pipeline

A joint security advisory from 16 government agencies across 10 countries warns that Chinese state-linked threat actors systematically use compromised IoT devices and routers as proxy networks (botnets) to launch attacks and steal data. The advisory highlights the Raptor Train botnet—controlled by China's Integrity Technology Group—which infected over 200,000 devices including SOHO routers, cameras, and firewalls. Multiple Chinese-linked threat groups, including Flax Typhoon, rely on these covert networks for infrastructure.

Tags
infrastructure
/// RELATED