Follow the latest coverage, related explainers and connected technology stories.
The United States announced the disruption of the MicroScan and FishHub tools, developed by Integrity Technology Group and used by state-backed Chinese entities to scan and breach networks and steal data. The targets included critical infrastructure, airports, universities, and government organizations in the United States and other countries.
The FBI seized seven domains used by the China-linked Flax Typhoon group to operate the MicroScan and FishHub tools, which were used to scan networks, breach organizations, and steal data worldwide. U.S. and international agencies issued indicators of compromise and defensive recommendations alongside the operation.
Researchers have identified a new Mirai-based malicious network targeting internet-connected gateway devices and turning them into SOCKS5 nodes for relaying traffic, with capabilities for stealing credentials and conducting DDoS attacks. Evooo1Bot exploits known vulnerabilities in multiple devices and products and uses advanced stealth and persistence mechanisms.