Canada Telecom Hack: China Suspected
- A major cybersecurity incident has come to light, wiht officials from both Canada and the United States confirming that a Canadian telecommunications provider was compromised by hackers with...
- The Canadian Cyber Center, the country's primary cybersecurity agency, issued a statement identifying the responsible actors as "almost certainly PRC state-sponsored actors, specifically Salt Typhoon." The FBI released...
- Salt Typhoon, a hacking group tracked by researchers and government officials, is known for targeting nations worldwide on behalf of China.
A Canadian telecommunications provider faced a severe cyberattack, with Chinese government-backed hackers suspected of exploitation. The attackers leveraged a known vulnerability in Cisco systems, even though a patch was available. Authorities, including the Canadian Cyber Center and the FBI, have linked the incident to Salt Typhoon, a group known for targeting telecom infrastructure globally. this telecom hack compromised numerous Cisco devices, perhaps allowing access to sensitive data. The same group previously targeted US telecom companies. Discover how this breach impacts the industry and the importance of cybersecurity in protecting critical infrastructure. News Directory 3 brings you the latest on this developing story. What steps will be taken to prevent future attacks? Discover what’s next …
Chinese hackers Exploit Security Vulnerability to Target Telecom Providers
A major cybersecurity incident has come to light, wiht officials from both Canada and the United States confirming that a Canadian telecommunications provider was compromised by hackers with ties to the Chinese government. The attackers exploited a high-severity vulnerability in Cisco systems,despite a patch being available for over a year.
The Canadian Cyber Center, the country’s primary cybersecurity agency, issued a statement identifying the responsible actors as “almost certainly PRC state-sponsored actors, specifically Salt Typhoon.” The FBI released a similar statement.
Salt Typhoon, a hacking group tracked by researchers and government officials, is known for targeting nations worldwide on behalf of China. in October 2023, researchers revealed that the group had compromised more than 10,000 Cisco devices by exploiting CVE-2023-20198, a vulnerability with a severity rating of 10, the maximum possible.
The vulnerability affected any Cisco iOS XE switch, router, or wireless LAN controller with the HTTP or HTTPS server feature enabled and exposed to the internet. Cisco released a patch shortly after the vulnerability was reported.
This same group, Salt Typhoon, has been linked to hacks on U.S.-based telecom companies, including Verizon and AT&T, last year. According to the Wall Street Journal, the hackers likely used their access to monitor wiretap systems used by these companies on behalf of government agencies. They also reportedly gained access to other types of Internet traffic.
What’s next
Investigations are ongoing to fully assess the extent of the data breach and implement stronger security measures to prevent future attacks. The incident highlights the importance of promptly applying security patches and maintaining robust cybersecurity defenses, especially within critical infrastructure sectors like telecommunications. The role of international cooperation in combating state-sponsored cyberattacks remains crucial.
