Drooid Logo
Back to story perspectives

Full Breakdown

International Cyber Agencies Warn of China-Linked Covert Networks

4/24/2026, 12:34:20 AM

Urgent Advisory on Cybersecurity Threats

On April 23, 2026, international cyber agencies, led by Britain's National Cyber Security Centre (NCSC), issued a warning urging organizations to enhance their defenses against covert networks utilized by China-linked hackers. This guidance was developed in collaboration with 15 international partners from eight countries, including the United States, Australia, Canada, Germany, Japan, the Netherlands, New Zealand, and Spain. The NCSC highlighted that these covert networks often consist of vulnerable everyday internet-connected devices, such as home routers and smart devices, which are exploited to target critical sectors globally, steal sensitive data, and maintain persistent access.

Shift in Cyber Tactics

Paul Chichester, the NCSC's director of operations, noted a "deliberate shift" in the tactics of cyber groups based in China, who are increasingly using these networks to obscure their malicious activities and evade accountability. This advisory follows a statement from Richard Horne, head of the NCSC, who indicated that the agency is currently managing approximately four nationally significant cyber incidents each week. Horne emphasized that the most impactful attacks are increasingly linked to state actors rather than traditional criminal organizations.

Challenges in Detection

The new guidance warns that attacks orchestrated through these covert networks can be particularly challenging to detect, as evidence of such activities can vanish rapidly, complicating efforts to disrupt them. This poses a significant risk to national security and critical infrastructure, prompting the NCSC to call on leading artificial intelligence companies to collaborate with the government in developing AI-powered cyber-defense capabilities.

Rising Cyber Threats from Nation States

The advisory comes amid rising concerns about cyberattacks from nation-states, including not only China but also Iran and Russia. The NCSC's proactive stance reflects a broader trend of increasing cyber threats that are becoming more sophisticated and harder to trace. The agency's recent findings indicate that routers have emerged as the riskiest IT devices in 2026, with an average of 32 security flaws per device, significantly higher than the 14 vulnerabilities found in computers.

Official Statements & Responses

The NCSC's advisory underscores the urgency of addressing these vulnerabilities in everyday devices, which are often overlooked in cybersecurity strategies. The collaboration among international partners signifies a unified approach to combatting these threats. The Chinese foreign ministry has not yet responded to inquiries regarding these allegations.

Criticism & Opposition

While the NCSC's guidance aims to bolster cybersecurity, critics argue that the focus on China may overlook vulnerabilities within domestic infrastructures and the need for comprehensive cybersecurity policies that address all potential threats, not just those linked to foreign actors.

Verbatim Quotes

  • “In recent years, we have seen a deliberate shift in cyber groups based in China utilising these networks to hide their malicious activity in an attempt to avoid accountability,” — Paul Chichester, Director of Operations, NCSC
  • “He said his agency continues to handle about four nationally significant cyberincidents a week on average, and that the highest-impact attacks are increasingly tied to governments rather than criminal gangs alone.” — Richard Horne, Head of NCSC

This advisory serves as a critical reminder for organizations worldwide to reassess their cybersecurity measures in light of evolving threats from state-sponsored cyber activities.