In a joint cybersecurity advisory, the NSA, CISA, and the FBI reveal China-backed hackers exploited publicly known vulnerabilities to snoop on network traffic
Several US federal agencies today revealed that Chinese-backed threat actors have targeted and compromised major telecommunications companies … Source: National Security … .
BleepingComputer Sergiu Gatlan
Related Coverage
- NSA, CISA, and FBI Expose PRC State-Sponsored Exploitation of Network Providers, Devices Central Security Service · National Security Agency
- Alert (AA22-158A) — People's Republic of China State-Sponsored Cyber Actors Exploit Network Providers and Devices CISA
- Chinese hackers are breaching telecoms networks through vulnerable equipment Tech Monitor · Claudia Glover
- Chinese Hackers Exploiting Basic Network Vulnerabilities, U.S. Agencies Warn Forbes · Emma Woollacott
- NSA, FBI warning: Hackers are using these flaws to target VPNs and network devices ZDNet · Liam Tung
- US agencies detail the digital ‘plumbing’ used by Chinese state-sponsored hackers The Record · Martin Matishak
- People's Republic of China State-Sponsored Cyber Actors Exploit Network Providers and Devices CISA
- Chinese hackers breach ‘major’ telecoms firms, US says CNN · Sean Lyngaas
- Beijing-backed baddies target unpatched networking kit to attack telcos The Register · Simon Sharwood
- China-linked threat actors have breached telcos and network service providers Security Affairs · Pierluigi Paganini
- U.S. Agencies Warn About Chinese Hackers Targeting Telecoms and Network Service Providers The Hacker News · Ravie Lakshmanan
- US agencies accuse China of attacking telcos and network providers iTnews · Juha Saarinen
Discussion
-
@martinmatishak
Martin Matishak
on x
“This work is building the foundation that they can do all of their objectives,” @NSA_CSDirector said of Chinese state-linked hackers. “This is their plumbing.” https://therecord.media/...
-
@strawbeecream
@strawbeecream
on x
“The attackers then stole credentials to access underlying SQL databases and used SQL commands to dump user and admin credentials from critical Remote Authentication Dial-In User Service (RADIUS) servers.” https://twitter.com/... https://twitter.com/...
-
@nsa_csdirector
Rob Joyce
on x
PRC sponsored actors are using access to telcos and ISPs to scale their targeting. To kick them out, we must understand the tradecraft and detect them beyond just initial access. https://twitter.com/...
-
@adam_k_levin
Adam Levin
on x
China-backed threat actors have exploited known vulnerabilities to conduct massive data harvesting operations against the US: https://www.bleepingcomputer.com/ ...
-
@martinmatishak
Martin Matishak
on x
@FBI ... “Businesses may understand that they've had intrusion, or they've stopped an attempted intrusion, but they often can't weave together the pieces. This advisory is intended to bring together the pieces,” @NSA_CSDirector told me. https://therecord.media/...
-
@jseldin
Jeff Seldin
on x
The #China sponsored #cyber actors “are also consistently evolving & adapting tactics to bypass defenses” warn @CISAgov @NSACyber @FBI They “mix their customized toolset w/publicly available tools...to obscure their activity by blending into the noise” https://www.cisa.gov/...
-
@martinmatishak
Martin Matishak
on x
Taking advantage of common vulnerabilities and exposures (CVEs) allows malicious actors backed by Beijing to break into victim accounts and network infrastructure —"without using their own distinctive or identifying malware," @FBI, @NSAGov & @CISAgov. https://therecord.media/...
-
@dcuthbert
Daniel Cuthbert
on x
It's almost like we need to really have that talk with vendors of critical infrastructure and tell them that something has to change. Looking at Cisas KEV, one realises how bad software still is given the bugs being exploited. https://twitter.com/...
-
@threatresearch
@threatresearch
on x
At Black Hat in 2018, I had very sharp words with a guy whose job is to coordinate vulnerability disclosures for a big company, about this very issue. He told me that he trusted his (CN) vulnerability reporters implicitly. That dude was and is hopelessly naive. Magical thinking. …