Salt Typhoon attacks again: more ISP networks, universities and telecommunications of the US


  • Safety researchers of the registered future observe the new activity of Typhoon de Sal
  • The threat actor still chases ISP and universities in the West
  • The group is abusing failures in the Cisco team to achieve new objectives

Salt Typhoon, a threat actor sponsored by the Chinese state better known to violate almost a dozen telecommunications suppliers in the United States, has played again, hitting not only US organizations, but also those of the United Kingdom, South Africa and other parts of the world.

The latest intrusions were detected by Future recorded cyber security researchers, which said the group is aimed at the web interfaces exposed to the Internet of the IOS of Cisco that feeds different routers and switches. These devices have known vulnerabilities that the actors of the threat are actively exploiting to obtain initial access, root privileges and more.

Leave a Comment

Your email address will not be published. Required fields are marked *