<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic New &amp;quot;Raptor Train&amp;quot; IoT Botnet Compromises Over 200,000 Devices Worldwide in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73940#M4575</link>
    <description>&lt;P&gt;Cybersecurity researchers have uncovered a never-before-seen botnet comprising an army of small office/home office (SOHO) and IoT devices that are likely operated by a Chinese nation-state threat actor called&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://thehackernews.com/2024/06/redjuliett-cyber-espionage-campaign.html" target="_blank" rel="noopener"&gt;Flax Typhoon&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;(aka Ethereal Panda or RedJuliett).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The sophisticated botnet, dubbed&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Raptor Train&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;by Lumen's Black Lotus Labs, is believed to have been operational since at least May 2020, hitting a peak of 60,000 actively compromised devices in June 2023.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://thehackernews.com/2024/09/new-raptor-train-iot-botnet-compromises.html" target="_blank"&gt;https://thehackernews.com/2024/09/new-raptor-train-iot-botnet-compromises.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So far it has only affected SOHO but it may only be a matter of time until it "morphs"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;d&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 18 Sep 2024 18:04:36 GMT</pubDate>
    <dc:creator>dcontesti</dc:creator>
    <dc:date>2024-09-18T18:04:36Z</dc:date>
    <item>
      <title>New "Raptor Train" IoT Botnet Compromises Over 200,000 Devices Worldwide</title>
      <link>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73940#M4575</link>
      <description>&lt;P&gt;Cybersecurity researchers have uncovered a never-before-seen botnet comprising an army of small office/home office (SOHO) and IoT devices that are likely operated by a Chinese nation-state threat actor called&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://thehackernews.com/2024/06/redjuliett-cyber-espionage-campaign.html" target="_blank" rel="noopener"&gt;Flax Typhoon&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;(aka Ethereal Panda or RedJuliett).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The sophisticated botnet, dubbed&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Raptor Train&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;by Lumen's Black Lotus Labs, is believed to have been operational since at least May 2020, hitting a peak of 60,000 actively compromised devices in June 2023.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://thehackernews.com/2024/09/new-raptor-train-iot-botnet-compromises.html" target="_blank"&gt;https://thehackernews.com/2024/09/new-raptor-train-iot-botnet-compromises.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So far it has only affected SOHO but it may only be a matter of time until it "morphs"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;d&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Sep 2024 18:04:36 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73940#M4575</guid>
      <dc:creator>dcontesti</dc:creator>
      <dc:date>2024-09-18T18:04:36Z</dc:date>
    </item>
    <item>
      <title>Re: New "Raptor Train" IoT Botnet Compromises Over 200,000 Devices Worldwide</title>
      <link>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73943#M4576</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/715155969"&gt;@dcontesti&lt;/a&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Just point it in the direction of OpenAi GPT-4o and it will do all the hacking for itself immediately,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It will cause major disruption if it takes off automatically and in an uncontrolled manner.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Lets hope they have a way turn it off, once released.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Wed, 18 Sep 2024 22:32:38 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73943#M4576</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2024-09-18T22:32:38Z</dc:date>
    </item>
    <item>
      <title>Re: New "Raptor Train" IoT Botnet Compromises Over 200,000 Devices Worldwide</title>
      <link>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73954#M4577</link>
      <description>&lt;P&gt;&lt;EM&gt;Flax Typhoon -- Ethereal Panda -- RedJuliett&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I don't mean to stray from the post, but are these unconventional and conspicuously strange names intended to replace APT numbering?&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Sep 2024 12:23:26 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/73954#M4577</guid>
      <dc:creator>ericgeater</dc:creator>
      <dc:date>2024-09-19T12:23:26Z</dc:date>
    </item>
    <item>
      <title>Re: New "Raptor Train" IoT Botnet Compromises Over 200,000 Devices Worldwide</title>
      <link>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/74316#M4596</link>
      <description>&lt;P&gt;Amazing blog about cyber but I search in &lt;A href="https://chatgtpai.org/de/" target="_blank" rel="noopener"&gt;ChatGPT&lt;/A&gt; I see different one from this Is it correct?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Oct 2024 20:34:27 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/New-quot-Raptor-Train-quot-IoT-Botnet-Compromises-Over-200-000/m-p/74316#M4596</guid>
      <dc:creator>michaljordan</dc:creator>
      <dc:date>2024-10-03T20:34:27Z</dc:date>
    </item>
  </channel>
</rss>

