Flax Typhoon

Also known as: Ethereal Panda, RedJuliett

Overview

Chinese state-sponsored group operating a massive IoT botnet of compromised routers and cameras for espionage proxy networks. Targets Taiwan, Southeast Asia, and US entities.

MITRE ATT&CK Coverage

Recon
Res Dev
Init Access
Execution
Persistence
Priv Esc
Def Evasion
Cred Access
Discovery
Lat Move
Collection
C2
Exfil
Impact
3 of 14 tactics observed

Raw TTPs

IoT Botnet OperationsVPN ExploitationWeb Shell DeploymentProxy NetworksSOHO Device Exploitation

Related Intelligence (1)