Critical Infrastructure Security, Threat Intelligence

Salt Typhoon likely to remain in US telco networks forever, experts say

China Bans Cyber Attacks: Examining Internet Security with Chinese Flag and Binary Data Through a Magnifying Glass Concept

Multiple U.S. telecommunications providers compromised by Chinese state-backed threat group Salt Typhoon were noted by experts to unlikely expunge the threat from their networks, according to CyberScoop.

Aside from complications stemming from modern telecommunications networks and their identity solutions, inadequate cybersecurity measures have resulted in various pathways that could be exploited by threat actors, with Nemesis Global founder and CEO Gentry Lane noting that such a threat would be most effectively combated through early identification in the kill chain. Insufficient indicators of compromise for Salt Typhoon have also added to the challenges of threat hunters, said Censys principal security researcher Silas Cutler. "Those types of really targeted threat hunting [IOCs] to look for, I just haven't seen it with Salt Typhoon. I feel like there's not enough for me to hunt on regularly and reliably to be able to say, 'yeah, I think we have pretty good removal of this activity,'" Cutler added.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds