Salt Typhoon
Threat Actor
Chinese state-sponsored hacking group known as "Salt Typhoon" is linked to a series of cyberattacks targeting telecommunications firms globally. These breaches compromised at least nine major telecom providers, including AT&T, Verizon, and T-Mobile. The group reportedly focused on infiltrating telecom infrastructure to steal text messages, phone call information, and voicemails from targeted people. The threat actors also targeted the wiretapping platforms used by the US government, raising serious national security concerns.
Incidents Associated with this Threat
- February 20, 2025: Salt Typhoon Hackers Attack Telecom Giant Viasat
- October 28, 2024: Multiple US Telecom Providers Hacked by Chinese Threat Actors.
Malware Used by this Threat Actor
No malware identified for this threat actor.
