Government release
U.S. Government Disrupts Botnet People's Republic of China Used to Conceal Hacking of Critical Infrastructure
United States Department of Justice, January 31, 2024. Court-authorized malware deletion from routers, Rule 41 warrants in WDPA, reinfection caveat.
- Source type
- Government release
- Published
- January 31, 2024
- Research grade
- P1
- Used in entries
- 5
Bibliographic record
- Publisher
- United States Department of Justice
- Published
- January 31, 2024
- Source type
- Government release
- Research grade
- Source grade P1
- Language
- English
- Official record
- Official publication
- Address
- No address recorded for this source. Publisher, title, and date are given so it can be retrieved from the publisher.
- What it supports
- Court-authorized malware deletion from routers, Rule 41 warrants in WDPA, reinfection caveat
- Dataset id
- src_doj_kv_botnet_2024
Research notes
- URL not re-verified in this pass.
How this source is used
Cited 5 times across 3 record types.
The role on each citation records what the source was relied on for. A primary source establishes the fact, a supporting source corroborates it, technical evidence describes the infrastructure, and a later outcome records what happened afterwards.
Sources were reviewed to a research cutoff of August 20, 2026. Addresses recorded after that date are not reflected here.
Cited by
Takedown records
1 citation
Cited on the takedown record itself.
-
KV Botnet disruptionPrimary source
State sponsored, December 2023
Organization roles
2 citations
Cited for an organization's recorded role in a takedown.
-
Federal Bureau of InvestigationPrimary source
Operational lead, KV Botnet disruption
-
United States Attorney's Office for the Western District of PennsylvaniaPrimary source
Prosecuting, KV Botnet disruption
Infrastructure
2 citations
Cited for infrastructure recorded as acted on.
-
Malware installationPrimary source
Malware installation remediated, KV Botnet disruption
-
Command and control serverPrimary source
Command and control server disabled, KV Botnet disruption