The US says it has identified a ninth telecom company impacted by the Salt Typhoon hacks, and the number of individuals directly impacted is “less than 100”
In an update Friday, the White House says nine telecom companies were impacted by the Chinese espionage effort. — Learn more.
CyberScoopGreg Otto
Context & Ripple Effects
The reported tally rises from eight affected US telecom companies identified earlier in the coverage, extending the known scope of an intrusion campaign already tied to telecom infrastructure.
The update also follows reporting that AT&T and Verizon had cleared their networks, while the government’s estimate of fewer than 100 directly affected people distinguishes the targeted human impact from the broader number of compromised providers.
First-order effects
A ninth telecom company must now be treated as part of the incident-response and remediation effort, alongside the providers already identified by the US.
The sub-100 count narrows the disclosed set of directly affected individuals, but does not reduce the operational significance of compromise across nine telecom companies.
Second-order effects
Telecom operators and their enterprise and government customers face added pressure to validate whether related access paths or targeted communications were present, rather than relying on public clearance statements alone.
The expanding provider count makes cross-company threat information and coordinated remediation more important, since the campaign’s impact is no longer confined to the initially named networks.
Third-order effects
If additional providers continue to surface after initial disclosures, telecom security will be judged less by whether a single network is declared clean and more by whether the sector can detect and contain persistent, shared intrusion methods.
The episode reinforces the strategic exposure created when communications infrastructure is both broadly interconnected and a target for focused espionage, likely sustaining scrutiny of carrier security practices.
The trend:Salt Typhoon is one data point in a broader shift toward persistent, infrastructure-level espionage campaigns that force coordinated defense across telecom networks.
You know, it probably isn't great the only politicians to note we've been in a cold war with China for the last however many years have had their brains melted by a combination of racism and being old enough to remember the Big Bopper. — apnews.com/article/unit...
I just assumed that everybody was assuming that all telcos of any appreciable size in the US, and many international telcos, have been impacted by Salt Typhoon. [embedded post]
NEW: White House said Salt Typhoon occurred in large part due to telecoms failure to implement basic cybersecurity measures; company victim lists has grown to 9 cyberscoop.com/salt-typhoon... Tip @techmeme.com
Crazy to me that the worst cyber attack in American history has gone pretty much entirely under the radar. The Chinese are probably reading your texts *and listening to your calls* https://www.politico.com/... [image]
Months after revelation of Salt Typhoon, one of the biggest hacks of US critical infrastructure this decade, we get: - @FCC regulations that will take months to years to implement - @USGSA review of federal contracts - @CommerceGov might block China Telecom but TBD Too little,
White House gave a small update on Salt Typhoon: A ninth telco has been added to the victim list (previously there had been 8 known victim companies) WH has sent out a threat-hunting and hardening guide to telcos to try and remove threat actors (how ninth victim surfaced)