The United States, the United Kingdom, along with more than a dozen allied countries, have accused the hacker group Salt Typhoon of orchestrating a global cyber-espionage campaign. The operation is allegedly facilitated by three Chinese technology companies—Sichuan Juxinhe Network Technology, Beijing Huanyu Tianqiong Information Technology, and Sichuan Zhixin Ruijie Network Technology—which are said to support cyber operations of China’s Ministry of State Security and the People’s Liberation Army (PLA).
Since 2021, the hacker group has targeted critical networks in sectors such as government, telecommunications, transportation, military, and hospitality. Their main tactic is exploiting long-standing vulnerabilities in popular devices, such as Ivanti Connect Secure, Palo Alto PAN-OS, Cisco IOS XE, and Cisco Smart Install, to steal sensitive data, intercept communications, and maintain long-term access to victims’ systems.
Cybersecurity agencies, including the NSA and NCSC, have urged organizations worldwide to promptly apply security patches, tighten system configurations, disable unnecessary services, and turn off the legacy Cisco Smart Install feature, which has often served as an entry point for breaches.
In previous incidents, Salt Typhoon was known to have breached major U.S. telecommunications operators such as AT&T, Verizon, and Lumen, and even hacked into the U.S. Army National Guard’s network in 2024. This series of attacks prompted U.S. regulators to strengthen network security requirements and raise cybersecurity defense standards.
Image source: https://voi.id/teknologi/509723/fbi-peringatkan-peretas-china-salt-typhoon-retas-200-perusahaan-as-di-berbagai-industri
Need Any Technology Solution