home.social

#telecomsecurity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #telecomsecurity, aggregated by home.social.

  1. Bad Connection
    Uncovering Global Telecom Exploitation by Covert Surveillance Actors citizenlab.ca/research/uncover

    An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.

    #CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom

  2. Bad Connection
    Uncovering Global Telecom Exploitation by Covert Surveillance Actors citizenlab.ca/research/uncover

    An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.

    #CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom

  3. Bad Connection
    Uncovering Global Telecom Exploitation by Covert Surveillance Actors citizenlab.ca/research/uncover

    An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.

    #CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom

  4. Citizen Lab exposes global telecom exploitation: multi-vector signalling & SIM-based tracking, operator infrastructure abused across 20+ countries; persistent campaigns reveal weak intercarrier OPSEC and urgent need for accountability. Read: citizenlab.ca/research/uncover 🔍📡 #Surveillance #TelecomSecurity
    #Privacy #Security

  5. Citizen Lab exposes global telecom exploitation: multi-vector signalling & SIM-based tracking, operator infrastructure abused across 20+ countries; persistent campaigns reveal weak intercarrier OPSEC and urgent need for accountability. Read: citizenlab.ca/research/uncover 🔍📡 #Surveillance #TelecomSecurity
    #Privacy #Security

  6. Citizen Lab exposes global telecom exploitation: multi-vector signalling & SIM-based tracking, operator infrastructure abused across 20+ countries; persistent campaigns reveal weak intercarrier OPSEC and urgent need for accountability. Read: citizenlab.ca/research/uncover 🔍📡 #Surveillance #TelecomSecurity
    #Privacy #Security

  7. Citizen Lab exposes global telecom exploitation: multi-vector signalling & SIM-based tracking, operator infrastructure abused across 20+ countries; persistent campaigns reveal weak intercarrier OPSEC and urgent need for accountability. Read: citizenlab.ca/research/uncover 🔍📡

  8. Citizen Lab exposes global telecom exploitation: multi-vector signalling & SIM-based tracking, operator infrastructure abused across 20+ countries; persistent campaigns reveal weak intercarrier OPSEC and urgent need for accountability. Read: citizenlab.ca/research/uncover 🔍📡 #Surveillance #TelecomSecurity
    #Privacy #Security

  9. Odido confirms major breach:
    • 688,102 accounts added to HIBP
    • ~6M records potentially exposed
    • ShinyHunters claims responsibility
    • Ransom refused — data leaked in stages
    Sensitive financial & identity data compromised.

    Full details:
    technadu.com/odido-data-breach

    #InfoSec #DataBreach #TelecomSecurity #CyberRisk

  10. Odido confirms major breach:
    • 688,102 accounts added to HIBP
    • ~6M records potentially exposed
    • ShinyHunters claims responsibility
    • Ransom refused — data leaked in stages
    Sensitive financial & identity data compromised.

    Full details:
    technadu.com/odido-data-breach

    #InfoSec #DataBreach #TelecomSecurity #CyberRisk

  11. Odido confirms major breach:
    • 688,102 accounts added to HIBP
    • ~6M records potentially exposed
    • ShinyHunters claims responsibility
    • Ransom refused — data leaked in stages
    Sensitive financial & identity data compromised.

    Full details:
    technadu.com/odido-data-breach

    #InfoSec #DataBreach #TelecomSecurity #CyberRisk

  12. Odido confirms major breach:
    • 688,102 accounts added to HIBP
    • ~6M records potentially exposed
    • ShinyHunters claims responsibility
    • Ransom refused — data leaked in stages
    Sensitive financial & identity data compromised.

    Full details:
    technadu.com/odido-data-breach

    #InfoSec #DataBreach #TelecomSecurity #CyberRisk

  13. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  14. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  15. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  16. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  17. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  18. UNC3886 targeted Singapore’s telecom infrastructure, impacting Singtel, StarHub, M1 & Simba.

    Limited access, small technical data exfiltration, no customer data exposed.

    technadu.com/unc3886-cyber-esp

    What lessons should telecoms take from this?

    #Infosec #APT #TelecomSecurity

  19. UNC3886 targeted Singapore’s telecom infrastructure, impacting Singtel, StarHub, M1 & Simba.

    Limited access, small technical data exfiltration, no customer data exposed.

    technadu.com/unc3886-cyber-esp

    What lessons should telecoms take from this?

    #Infosec #APT #TelecomSecurity

  20. UNC3886 targeted Singapore’s telecom infrastructure, impacting Singtel, StarHub, M1 & Simba.

    Limited access, small technical data exfiltration, no customer data exposed.

    technadu.com/unc3886-cyber-esp

    What lessons should telecoms take from this?

    #Infosec #APT #TelecomSecurity

  21. UNC3886 targeted Singapore’s telecom infrastructure, impacting Singtel, StarHub, M1 & Simba.

    Limited access, small technical data exfiltration, no customer data exposed.

    technadu.com/unc3886-cyber-esp

    What lessons should telecoms take from this?

    #Infosec #APT #TelecomSecurity

  22. Reporting indicates a prolonged telecom-focused intrusion campaign may have affected mobile communications of UK government aides, with attribution linked by U.S. sources to Salt Typhoon.

    The case reinforces concerns around persistent access, metadata exposure, and call interception - particularly where legacy telecom systems intersect with modern threat actors.

    From a defensive standpoint, where should governments prioritize: network hardening, endpoint security, or telecom architecture redesign?

    Source: cybernews.com/cyber-war/salt-t

    Join the discussion and follow @technadu for responsible threat reporting.

    #ThreatIntelligence #TelecomSecurity #CyberEspionage #InfoSec #TechNadu

  23. Reporting indicates a prolonged telecom-focused intrusion campaign may have affected mobile communications of UK government aides, with attribution linked by U.S. sources to Salt Typhoon.

    The case reinforces concerns around persistent access, metadata exposure, and call interception - particularly where legacy telecom systems intersect with modern threat actors.

    From a defensive standpoint, where should governments prioritize: network hardening, endpoint security, or telecom architecture redesign?

    Source: cybernews.com/cyber-war/salt-t

    Join the discussion and follow @technadu for responsible threat reporting.

    #ThreatIntelligence #TelecomSecurity #CyberEspionage #InfoSec #TechNadu

  24. Reporting indicates a prolonged telecom-focused intrusion campaign may have affected mobile communications of UK government aides, with attribution linked by U.S. sources to Salt Typhoon.

    The case reinforces concerns around persistent access, metadata exposure, and call interception - particularly where legacy telecom systems intersect with modern threat actors.

    From a defensive standpoint, where should governments prioritize: network hardening, endpoint security, or telecom architecture redesign?

    Source: cybernews.com/cyber-war/salt-t

    Join the discussion and follow @technadu for responsible threat reporting.

    #ThreatIntelligence #TelecomSecurity #CyberEspionage #InfoSec #TechNadu

  25. Reporting indicates a prolonged telecom-focused intrusion campaign may have affected mobile communications of UK government aides, with attribution linked by U.S. sources to Salt Typhoon.

    The case reinforces concerns around persistent access, metadata exposure, and call interception - particularly where legacy telecom systems intersect with modern threat actors.

    From a defensive standpoint, where should governments prioritize: network hardening, endpoint security, or telecom architecture redesign?

    Source: cybernews.com/cyber-war/salt-t

    Join the discussion and follow @technadu for responsible threat reporting.

    #ThreatIntelligence #TelecomSecurity #CyberEspionage #InfoSec #TechNadu

  26. Brightspeed has acknowledged an ongoing investigation into alleged unauthorized access following claims made by a known threat group.

    The case underscores the importance of evidence validation, controlled disclosures, and coordinated response when dealing with public claims of data exfiltration - especially in large telecom environments.

    What best practices should guide organizations during claim-driven incident response?

    Contribute your perspective and follow @technadu for objective infosec coverage.

    #IncidentResponse #ThreatIntel #TelecomSecurity #CyberInvestigations #Infosec #DataProtection

  27. Brightspeed has acknowledged an ongoing investigation into alleged unauthorized access following claims made by a known threat group.

    The case underscores the importance of evidence validation, controlled disclosures, and coordinated response when dealing with public claims of data exfiltration - especially in large telecom environments.

    What best practices should guide organizations during claim-driven incident response?

    Contribute your perspective and follow @technadu for objective infosec coverage.

    #IncidentResponse #ThreatIntel #TelecomSecurity #CyberInvestigations #Infosec #DataProtection

  28. Brightspeed has acknowledged an ongoing investigation into alleged unauthorized access following claims made by a known threat group.

    The case underscores the importance of evidence validation, controlled disclosures, and coordinated response when dealing with public claims of data exfiltration - especially in large telecom environments.

    What best practices should guide organizations during claim-driven incident response?

    Contribute your perspective and follow @technadu for objective infosec coverage.

    #IncidentResponse #ThreatIntel #TelecomSecurity #CyberInvestigations #Infosec #DataProtection

  29. Brightspeed has acknowledged an ongoing investigation into alleged unauthorized access following claims made by a known threat group.

    The case underscores the importance of evidence validation, controlled disclosures, and coordinated response when dealing with public claims of data exfiltration - especially in large telecom environments.

    What best practices should guide organizations during claim-driven incident response?

    Contribute your perspective and follow @technadu for objective infosec coverage.

    #IncidentResponse #ThreatIntel #TelecomSecurity #CyberInvestigations #Infosec #DataProtection

  30. KT femtocell security failures allowed device cloning, SMS interception, and $169K in fraud. South Korean police arrested 5 suspects; more warrants issued.

    Details:
    technadu.com/kt-telco-femtocel

    #TelecomSecurity #Infosec #CyberCrime

  31. KT femtocell security failures allowed device cloning, SMS interception, and $169K in fraud. South Korean police arrested 5 suspects; more warrants issued.

    Details:
    technadu.com/kt-telco-femtocel

    #TelecomSecurity #Infosec #CyberCrime

  32. KT femtocell security failures allowed device cloning, SMS interception, and $169K in fraud. South Korean police arrested 5 suspects; more warrants issued.

    Details:
    technadu.com/kt-telco-femtocel

    #TelecomSecurity #Infosec #CyberCrime

  33. KT femtocell security failures allowed device cloning, SMS interception, and $169K in fraud. South Korean police arrested 5 suspects; more warrants issued.

    Details:
    technadu.com/kt-telco-femtocel

    #TelecomSecurity #Infosec #CyberCrime

  34. Two former Cisco Networking Academy students have been linked to the Salt Typhoon campaign, which has compromised 80+ global telecom providers. Investigators say the attackers used technical skills learned directly from Cisco’s curriculum to target IOS and ASA devices.

    This case reignites debate over whether corporate training programs in politically tense regions may inadvertently strengthen future threat actors.

    Source: cybersecuritynews.com/chinese-

    Curious how the community views this risk.
    Follow TechNadu for more verified cybersecurity reporting.

    #CyberSecurity #Infosec #CiscoSecurity #ThreatIntel #SaltTyphoon #TelecomSecurity #SecurityResearch

  35. Two former Cisco Networking Academy students have been linked to the Salt Typhoon campaign, which has compromised 80+ global telecom providers. Investigators say the attackers used technical skills learned directly from Cisco’s curriculum to target IOS and ASA devices.

    This case reignites debate over whether corporate training programs in politically tense regions may inadvertently strengthen future threat actors.

    Source: cybersecuritynews.com/chinese-

    Curious how the community views this risk.
    Follow TechNadu for more verified cybersecurity reporting.

    #CyberSecurity #Infosec #CiscoSecurity #ThreatIntel #SaltTyphoon #TelecomSecurity #SecurityResearch

  36. Two former Cisco Networking Academy students have been linked to the Salt Typhoon campaign, which has compromised 80+ global telecom providers. Investigators say the attackers used technical skills learned directly from Cisco’s curriculum to target IOS and ASA devices.

    This case reignites debate over whether corporate training programs in politically tense regions may inadvertently strengthen future threat actors.

    Source: cybersecuritynews.com/chinese-

    Curious how the community views this risk.
    Follow TechNadu for more verified cybersecurity reporting.

    #CyberSecurity #Infosec #CiscoSecurity #ThreatIntel #SaltTyphoon #TelecomSecurity #SecurityResearch

  37. Two former Cisco Networking Academy students have been linked to the Salt Typhoon campaign, which has compromised 80+ global telecom providers. Investigators say the attackers used technical skills learned directly from Cisco’s curriculum to target IOS and ASA devices.

    This case reignites debate over whether corporate training programs in politically tense regions may inadvertently strengthen future threat actors.

    Source: cybersecuritynews.com/chinese-

    Curious how the community views this risk.
    Follow TechNadu for more verified cybersecurity reporting.

    #CyberSecurity #Infosec #CiscoSecurity #ThreatIntel #SaltTyphoon #TelecomSecurity #SecurityResearch

  38. Two former Cisco Networking Academy students have been linked to the Salt Typhoon campaign, which has compromised 80+ global telecom providers. Investigators say the attackers used technical skills learned directly from Cisco’s curriculum to target IOS and ASA devices.

    This case reignites debate over whether corporate training programs in politically tense regions may inadvertently strengthen future threat actors.

    Source: cybersecuritynews.com/chinese-

    Curious how the community views this risk.
    Follow TechNadu for more verified cybersecurity reporting.

    #CyberSecurity #Infosec #CiscoSecurity #ThreatIntel #SaltTyphoon #TelecomSecurity #SecurityResearch

  39. U.S. investigators say two men linked to the China‑backed Salt Typhoon campaign likely honed their skills at the Cisco Networking Academy. Their work targeted telecom gear, raising fresh concerns for cybersecurity analysts and the broader industry. Read on for the full story. #CiscoNetworkingAcademy #SaltTyphoon #TelecomSecurity #NationStateHacking

    🔗 aidailypost.com/news/two-men-t

  40. DoT has clarified that the Telecom Cyber Security (TCS) Amendment Rules 2025 remain active, despite a duplicate Gazette publication being withdrawn.

    The updates introduce MNV-based identity validation, enhanced IMEI verification for resold devices, and tighter coordination with TIUEs handling telecom identifiers - all with data-protection guardrails.

    Thoughts from the security community on the practical impact?

    Source: business-standard.com/industry

    Follow @technadu for more vendor-neutral policy and infosec reporting.

    #infosec #cybersecurity #telecomsecurity #DoT #DigitalIndia #fraudprevention #policy

  41. DoT has clarified that the Telecom Cyber Security (TCS) Amendment Rules 2025 remain active, despite a duplicate Gazette publication being withdrawn.

    The updates introduce MNV-based identity validation, enhanced IMEI verification for resold devices, and tighter coordination with TIUEs handling telecom identifiers - all with data-protection guardrails.

    Thoughts from the security community on the practical impact?

    Source: business-standard.com/industry

    Follow @technadu for more vendor-neutral policy and infosec reporting.

    #infosec #cybersecurity #telecomsecurity #DoT #DigitalIndia #fraudprevention #policy

  42. DoT has clarified that the Telecom Cyber Security (TCS) Amendment Rules 2025 remain active, despite a duplicate Gazette publication being withdrawn.

    The updates introduce MNV-based identity validation, enhanced IMEI verification for resold devices, and tighter coordination with TIUEs handling telecom identifiers - all with data-protection guardrails.

    Thoughts from the security community on the practical impact?

    Source: business-standard.com/industry

    Follow @technadu for more vendor-neutral policy and infosec reporting.

    #infosec #cybersecurity #telecomsecurity #DoT #DigitalIndia #fraudprevention #policy

  43. DoT has clarified that the Telecom Cyber Security (TCS) Amendment Rules 2025 remain active, despite a duplicate Gazette publication being withdrawn.

    The updates introduce MNV-based identity validation, enhanced IMEI verification for resold devices, and tighter coordination with TIUEs handling telecom identifiers - all with data-protection guardrails.

    Thoughts from the security community on the practical impact?

    Source: business-standard.com/industry

    Follow @technadu for more vendor-neutral policy and infosec reporting.

    #infosec #cybersecurity #telecomsecurity #DoT #DigitalIndia #fraudprevention #policy

  44. DoT has clarified that the Telecom Cyber Security (TCS) Amendment Rules 2025 remain active, despite a duplicate Gazette publication being withdrawn.

    The updates introduce MNV-based identity validation, enhanced IMEI verification for resold devices, and tighter coordination with TIUEs handling telecom identifiers - all with data-protection guardrails.

    Thoughts from the security community on the practical impact?

    Source: business-standard.com/industry

    Follow @technadu for more vendor-neutral policy and infosec reporting.

    #infosec #cybersecurity #telecomsecurity #DoT #DigitalIndia #fraudprevention #policy