You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
compromised edge devices
About this tag
This tag covers discussions about compromised edge devices, including SOHO routers, IoT gear, and smart devices that have been co-opted by threat actors. A key focus is on CISA advisories detailing how China-nexus groups build covert networks from these devices for espionage, pre-positioning, and scaling operations. The content highlights the structural shift from individually procured infrastructure to large, externally provisioned networks of compromised devices, making detection and attribution harder for defenders. Topics include the resilience of these botnet-like ecosystems, multi-actor reuse, and the implications for enterprise and home network security.
The latest CISA-led advisory on China-nexus covert networks of compromised devices marks an important shift in how state-backed operators are hiding, moving, and scaling their activity. Instead of relying on individually procured infrastructure, these actors are increasingly routing operations...