logo

CISA director says threat hunters spotted Salt Typhoon on federal networks before telco compromises 

ID: d873966f-c20a-52f8-99e5-17c5a73ebdc5

STIX ID: report--d873966f-c20a-52f8-99e5-17c5a73ebdc5

Feed Name: CyberScoop

Threat Score
85/100

Date Published: 2025-01-16

Date Updated: 2026-04-21

Author: djohnson

...
...

CISA Director Jen Easterly described how agency threat hunters discovered activity from the Chinese APT 'Salt Typhoon' on U.S. federal and commercial networks, revealing compromises of at least nine U.S. telecommunications firms, collection of phone geolocation data, and access to some phones. CISA coordinated seizures of actor-leased virtual servers, provided victim notifications and technical assistance, and warned that outdated telecom architectures and edge devices are being exploited by state-sponsored groups alongside other campaigns like Volt Typhoon.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.