Newzchain
News

Salt Typhoon Hackers Target Global Telecoms Despite US Crackdown

Annette George
Annette George·Feb 13, 2025·1 min read
Salt Typhoon hacking group targets global telecom companies, including US, UK affiliates, and universities

Chinese government-linked hacking group Salt Typhoon has breached five telecommunications companies across multiple countries between December 2024 and January 2025, according to a new report from threat intelligence firm Recorded Future, displaying the group's continued operations despite U.S. sanctions.

The latest victims include a U.S.-based affiliate of a major U.K. telecommunications provider, a U.S. internet service provider, and telecommunications companies in Italy, South Africa, and Thailand.

The group has also conducted surveillance operations against Myanmar-based provider Mytel's infrastructure.

The hackers' ongoing campaign follows their high-profile infiltration of major U.S. telecom giants last September, including AT&T and Verizon, where they accessed private communications of senior U.S. government officials and compromised law enforcement surveillance systems.

According to Recorded Future, Salt Typhoon has exploited vulnerabilities in Cisco devices running IOS XE software to target over 1,000 systems globally.

Newsletter

The corridor, every morning.

Funding rounds and cross-border capital moves, one email, five minutes.

The group has expanded its focus to include universities, potentially seeking access to telecommunications and engineering research.

The continued attacks come despite the U.S. Treasury Department's sanctions against Sichuan Juxinhe Network Technology, a Chinese company allegedly linked to the group.

Researchers expect Salt Typhoon to maintain its aggressive stance against telecommunications providers in the U.S. and internationally, suggesting current sanctions have done little to deter their activities.


Edited By Annette George

More in News