home.social

#salttyphoon — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #salttyphoon, aggregated by home.social.

  1. "Cisco’s Networking Academy, a global training program designed to educate IT students in the basics of IT networks and cybersecurity, proudly touts its accessibility to participants around the world: “We believe education can be the ultimate equalizer, enabling anyone, regardless of background, to develop expertise and shape their destiny in a digital era,” reads the first line on its website.

    That laudable statement, however, reads a bit differently when the “destiny” of those students appears to be owning a majority stake in companies linked to one of the most successful Chinese state-sponsored hacking operations ever to target the West—and many of Cisco's own products.

    That's the surprising conclusion of Dakota Cary, a researcher at cybersecurity firm SentinelOne and the Atlantic Council, who, like many security analysts, has closely tracked the Chinese state-sponsored hacker group known as Salt Typhoon. That cyberespionage group gained notoriety last year when it was revealed that the hackers had penetrated at least nine telecom companies and gained the ability to spy on Americans’ real-time calls and texts, specifically targeting then-presidential and vice presidential candidates Donald Trump and JD Vance, among many others."

    wired.com/story/2-men-linked-t

    #CyberSecurity #China #SaltTyphoon #StateHacking #Cisco #CiscoAcademy

  2. "When the Chinese hacker group known as Salt Typhoon was revealed last fall to have deeply penetrated major US telecommunications companies—ultimately breaching no fewer than nine of the phone carriers and accessing Americans' texts and calls in real time—that hacking campaign was treated as a four-alarm fire by the US government. Yet even after those hackers' high-profile exposure, they've continued their spree of breaking into telecom networks worldwide, including more in the US.

    Researchers at cybersecurity firm Recorded Future on Wednesday night revealed in a report that they've seen Salt Typhoon breach five telecoms and internet service providers around the world, as well as more than a dozen universities from Utah to Vietnam, all between December and January. The telecoms include one US internet service provider and telecom firm and another US-based subsidiary of a UK telecom, according to the company's analysts, though they declined to name those victims to WIRED."

    wired.com/story/chinas-salt-ty

    #CyberSecurity #China #SaltTyphoon #StateHacking #USA #BigTelco #Hacking

  3. "The message from President Biden’s national security adviser was startling.

    Chinese hackers had gained the ability to shut down dozens of U.S. ports, power grids and other infrastructure targets at will, Jake Sullivan told telecommunications and technology executives at a secret meeting at the White House in the fall of 2023, according to people familiar with it. The attack could threaten lives, and the government needed the companies’ help to root out the intruders.

    What no one at the briefing knew, including Sullivan: China’s hackers were already working their way deep inside U.S. telecom networks, too.

    The two massive hacking operations have upended the West’s understanding of what Beijing wants, while revealing the astonishing skill level and stealth of its keyboard warriors—once seen as the cyber equivalent of noisy, drunken burglars.

    China’s hackers were once thought to be interested chiefly in business secrets and huge sets of private consumer data. But the latest hacks make clear they are now soldiers on the front lines of potential geopolitical conflict between the U.S. and China, in which cyberwarfare tools are expected to be powerful weapons."

    wsj.com/tech/cybersecurity/typ

    #CyberSecurity #USA #China #SaltTyphoon #StateHacking #CyberWarfare

  4. Weekly output: Android 16, Mark Vena podcast, CISA communications-security advice

    I hope this finds you well and with family this holiday season, by which I mean I hope that family tech support has not been too strenuous whether you’re the provider or the recipient of it.

    Patreon readers got an extra post this week: a look at the massive dent that data centers will put into Virginia’s electric grid in coming decades if current trends continue.

    12/18/2024: Latest Android 16 Preview Tips Improved App Response, Location Security, PCMag

    This short post covered the second developer preview of Android 16, moving forward on an earlier development cycle than previous releases of Google’s mobile operating system.

    12/18/2024: Ep 105 SmartTechCheck Podcast — Expected CES Trends, Intel CEO departure, new incoming FCC leader, Mark Vena

    My major contribution to this episode of my tech-analyst pal’s podcast was trying to unpack the agenda of incoming Federal Communications Commission chair Brendan Carr.

    12/19/2024: The Feds Have Some Advice for ‘Highly Targeted’ Individuals: Don’t Use a VPN, PCMag

    I’ve been impressed for the past few years by how the Cybersecurity & Infrastructure Security Agency offers specific and actionable advice even if it may upset some vendors. CISA stuck to that pattern with the guidance it issued to people high enough in government or politics to draw the attention of Chinese state-sponsored hackers who have burrowed deeply into U.S. telecom infrastructure–guidance that included the seemingly counter-intuitive advice not to use a VPN for privacy protection because that only transfers the privacy risk from your current sources of connectivity to a single company. I think CISA’s right about that, certainly in the context of most PCMag readers. And in my own case: My major use case for VPNs these days is to evade geoblocking restrictions, like when I’m trying to read GDPR-incompliant U.S. news sites from somewhere in the EU.

    #Android16 #BrendanCarr #ChinaHacks #ChineseHacking #CISA #cybersecurity #encryptedMessaging #FCC #infosec #SaltTyphoon #VPN