Cyber Security News

Chinese Salt Typhoon Hacked 8+ Telecoms To Stole U.S. Citizens Data

A Chinese hacking campaign, codenamed “Salt Typhoon” by Microsoft, has infiltrated more than 8 American telecommunications companies, stealing vast amounts of U.S. citizens’ phone data.

Officials describe it as one of the largest intelligence compromises in U.S. history.

The operation, significantly larger than previously known to the public, has affected dozens of countries worldwide and compromised the communications of a large number of Americans.

The cyberespionage campaign has given hackers access to multiple types of information:-

  1. Call records and metadata, particularly focusing on the Washington, D.C. area
  2. Live phone calls of specific targets
  3. Systems used for law enforcement and intelligence agency access (CALEA systems)

While besides this, the analyst at NBC News noted that among the known victims are the presidential campaigns of Donald Trump and Kamala Harris, as well as the office of Senate Majority Leader Chuck Schumer.

Free Webinar on Best Practices for API vulnerability & Penetration Testing:  Free Registration

Government Response

Anne Neuberger, a deputy national security adviser, stated that the U.S. does not believe any of the affected telecoms have fully removed the hackers from their systems. This persistent threat poses a risk of ongoing compromises to communications until cybersecurity gaps are addressed.

U.S. officials, along with allies from Australia, Canada, and New Zealand, have released a public guide for telecommunications companies to protect themselves from Chinese hackers. The FBI is in the process of notifying Americans whose calls they believe were compromised, although not all affected individuals will be contacted.

In light of this unprecedented cyberattack, U.S. officials are urging Americans to take precautions:-

  • Use encrypted messaging apps for communications
  • Consider using cellphones that receive timely operating system updates
  • Implement responsibly managed encryption
  • Use phishing-resistant multi-factor authentication for email, social media, and collaboration tools

While China frequently denies responsibility for cyberattacks, the U.S. views this campaign as a massive but traditional espionage operation aimed at gathering intelligence on American politics and government.

The compromise has raised concerns about the vulnerability of telecommunications infrastructure and the need for enhanced cybersecurity measures globally.

The incident underscores the critical importance of robust cybersecurity practices and the ongoing challenges in protecting sensitive data in an increasingly interconnected world.

Analyse Real-World Malware & Phishing Attacks With ANY.RUN - Get up to 3 Free Licenses

Tushar Subhra Dutta

Tushar is a senior cybersecurity and breach reporter. He specializes in covering cybersecurity news, trends, and emerging threats, data breaches, and malware attacks. With years of experience, he brings clarity and depth to complex security topics.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

2 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

3 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

4 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

4 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

4 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

6 hours ago