China-sponsored threat groups like Salt Typhoon and Flax Typhoon are increasingly relying on multiple massive botnets comprising edge and IoT devices to run their cyber espionage and network intrusion campaigns, CISA and other security agencies say. The use of such “covert networks” makes it more difficult to detect and mitigate their campaigns.
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2026/04/china-backed-groups-are-using-massive-botnets-in-espionage-intrusion-campaigns/
![]()

