meta_pixel
Tapesearch Logo
Log in
CyberWire Daily

Botnet’s back, tell a friend. [Research Saturday]

CyberWire Daily

N2K Networks, Inc.

News, Daily News, Tech News, Technology

4.81.1K Ratings

🗓️ 5 July 2025

⏱️ 22 minutes

🧾️ Download transcript

Summary

Please enjoy this encore of Research Saturday. This week we are joined by ⁠⁠Silas Cutler⁠⁠, Principal Security Researcher at ⁠⁠Censys⁠⁠, asking the important question of "Will the Real Volt Typhoon Please Stand Up?" The FBI's disruption of the KV Botnet in December 2023, attributed to the Chinese threat group Volt Typhoon, targeted infected systems but did not affect the botnet's control infrastructure. Despite law enforcement efforts and technical exposure, the botnet's infrastructure has remained largely stable, with only changes in hosting providers, raising questions about whether another party operates the botnet. Censys scanning data from 2024 shows a shift in the botnet's control servers, indicating a response to disruption attempts, while the botnet's operators have shown limited efforts to obscure their infrastructure. The research can be found here: ⁠⁠Will the Real Volt Typhoon Please Stand Up? Learn more about your ad choices. Visit megaphone.fm/adchoices

Transcript

Click on a timestamp to play from that location

0:00.0

You're listening to the Cyberwire Network, powered by N2K.

0:09.7

AI adoption is exploding, and security teams are under pressure to keep up.

0:16.9

That's why the industry is coming together at the Datasec AI conference, the premier event for cybersecurity data and AI leaders, hosted by data security leader, Saira.

0:27.6

Built for the industry, by the industry, this two-day conference is where real-world insights and bold solutions take center stage.

0:35.6

Datasec AI 25 is happening November 12th and 13th in Dallas.

0:41.8

There's no cost to attend.

0:43.4

Just bring your perspective and join the conversation.

0:46.7

Register now at Datasek AI 2025.com backslash cyberwire.

0:52.7

Thank you. dot com backslash cyberwire. Hello everyone and welcome to the CyberWire's Research Saturday.

1:07.3

I'm Dave Bittner and this is our weekly conversation with researchers and analysts tracking down the threats and vulnerabilities,

1:14.6

solving some of the hard problems and protecting ourselves in a rapidly evolving cyberspace.

1:19.6

Thanks for joining us.

1:25.6

And as we kind of evaluated it more and more, it's started to become clear that it looks

1:33.1

like the activity that is the KD dot net side likely may be a different actor or an actor

1:40.6

working in direct support of Volt Typhoon, but it's a different set, likely a different set of hands-on keyboard operators

1:47.8

than those who are actually living off the land against high-value targets.

1:52.8

That's Silas Cutler, principal security researcher at Census.

1:57.0

The research we're discussing today is titled,

1:59.3

Will the Real Volt Typhoon Please Stand Up?

2:08.9

Well, let's back up just a little bit, and for folks who aren't following it too closely,

2:14.4

how do you describe Volt Typhoon themselves?

2:17.3

Yeah, so Volt Typhoon generally believed to be a threat actor that operates from the People's

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from N2K Networks, Inc., and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of N2K Networks, Inc. and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.