Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Volkswagen Sunlight Ibex concept adventure camper van
    • Ford Ranger Plug-In Hybrid Review: Prices, Availability, Specs
    • the WH rejected DOD’s proposal for the head of NSA and US Cyber Command, extending the agencies’ leadership vacuum; Trump fired NSA’s head in April (John Sakellariadis/Politico)
    • I Was Overwhelmed by Mattress Shopping. This $374 Mattress Topper Bought Me a Few More Comfortable Years
    • Obesity’s lasting impact on pancreatic health revealed
    • Eli Lilly’s Obesity Pill Appears to Work as Well as Injected GLP-1s
    • Etsy Is Clamping Down on 3D Printed Products. Here’s How It Could Affect You
    • Robots-Blog | Spielerische Robotik-Ausbildung: igus Low-Cost-Automation bewährt sich im Schulalltag
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Saturday, June 21
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»Technology»China’s Salt Typhoon Spies Are Still Hacking Telecoms—Now by Exploiting Cisco Routers
    Technology

    China’s Salt Typhoon Spies Are Still Hacking Telecoms—Now by Exploiting Cisco Routers

    Editor Times FeaturedBy Editor Times FeaturedFebruary 13, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link


    When the Chinese language hacker group generally known as Salt Hurricane was revealed final fall to have deeply penetrated major US telecommunications companies—finally breaching no fewer than 9 of the cellphone carriers and accessing People’ texts and calls in actual time—that hacking marketing campaign was handled as a four-alarm hearth by the US authorities. But even after these hackers’ high-profile publicity, they’ve continued their spree of breaking into telecom networks worldwide, together with extra within the US.

    Researchers at cybersecurity agency Recorded Future on Wednesday night time revealed in a report that they’ve seen Salt Hurricane breach 5 telecoms and web service suppliers all over the world, in addition to greater than a dozen universities from Utah to Vietnam, all between December and January. The telecoms embody one US web service supplier and telecom agency and one other US-based subsidiary of a UK telecom, based on the corporate’s analysts, although they declined to call these victims to WIRED.

    “They’re tremendous energetic, they usually proceed to be tremendous energetic,” says Levi Gundert, who leads Recorded Future’s analysis staff generally known as Insikt Group. “I believe there’s only a common under-appreciation for a way aggressive they’re being in turning telecommunications networks into Swiss cheese.”

    To hold out this newest marketing campaign of intrusions, Salt Hurricane—which Recorded Future tracks beneath its personal identify, RedMike, quite than the Hurricane deal with created by Microsoft—has focused the internet-exposed internet interfaces of Cisco’s IOS software program, which runs on the networking big’s routers and switches. The hackers exploited two completely different vulnerabilities in these gadgets’ code, considered one of which grants preliminary entry, and one other that gives root privileges, giving the hackers full management of an usually highly effective piece of kit with entry to a sufferer’s community.

    “Any time you are embedded in communication networks on infrastructure like routers, you have got the keys to the dominion in what you are capable of entry and observe and exfiltrate,” Gundert says.

    Recorded Future discovered greater than 12,000 Cisco gadgets whose internet interfaces had been uncovered on-line, and says that the hackers focused greater than a thousand of these gadgets put in in networks worldwide. Of these, they seem to have targeted on a smaller subset of telecoms and college networks whose Cisco gadgets they efficiently exploited. For these chosen targets, Salt Hurricane configured the hacked Cisco gadgets to connect with the hackers’ personal command-and-control servers by way of generic routing encapsulation, or GRE tunnels—a protocol used to arrange personal communications channels—then used these connections to keep up their entry and steal knowledge.

    When WIRED reached out to Cisco for remark, the corporate pointed to a security advisory it revealed about vulnerabilities within the internet interface of its IOS software program in 2023. “We proceed to strongly urge clients to observe suggestions outlined within the advisory and improve to the obtainable fastened software program launch,” a spokesperson wrote in an announcement.

    Hacking community home equipment as entry factors to focus on victims—usually by exploiting identified vulnerabilities that system house owners have did not patch—has turn out to be commonplace working process for Salt Hurricane and different Chinese language hacking teams. That is partially as a result of these community gadgets lack lots of the safety controls and monitoring software program that is been prolonged to extra conventional computing gadgets like servers and PCs. Recorded Future notes in its report that refined Chinese language espionage groups have focused these susceptible community home equipment as a main intrusion method for at the least 5 years.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Ford Ranger Plug-In Hybrid Review: Prices, Availability, Specs

    June 21, 2025

    Eli Lilly’s Obesity Pill Appears to Work as Well as Injected GLP-1s

    June 21, 2025

    Methane Pollution Has Cheap, Effective Solutions That Aren’t Being Used

    June 21, 2025

    What Big Tech’s Band of Execs Will Do in the Army

    June 21, 2025

    Seriously, What Is ‘Superintelligence’? | WIRED

    June 21, 2025

    ‘Wall-E With a Gun’: Midjourney Generates Videos of Disney Characters Amid Massive Copyright Lawsuit

    June 20, 2025

    Comments are closed.

    Editors Picks

    Volkswagen Sunlight Ibex concept adventure camper van

    June 21, 2025

    Ford Ranger Plug-In Hybrid Review: Prices, Availability, Specs

    June 21, 2025

    the WH rejected DOD’s proposal for the head of NSA and US Cyber Command, extending the agencies’ leadership vacuum; Trump fired NSA’s head in April (John Sakellariadis/Politico)

    June 21, 2025

    I Was Overwhelmed by Mattress Shopping. This $374 Mattress Topper Bought Me a Few More Comfortable Years

    June 21, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Show and Tell | Towards Data Science

    February 4, 2025

    Meet the Pitch Competition finalists of the EU-Startups Summit 2025!

    March 7, 2025

    Centralized vs. End-of-Line Palletizing: How to Choose?

    March 7, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.