The Canadian Centre for Cyber Security and the FBI have warned about Chinese state-sponsored hackers, specifically Salt Typhoon, targeting Canadian telecommunication companies. These attacks involved exploiting vulnerabilities like CVE-2023-20198 to steal sensitive data and conduct network reconnaissance, with potential implications for national security. #SaltTyphoon #CVE2023-20198
Keypoints
- Salt Typhoon is a threat group known for targeting telecom companies in the US and Canada.
- Recent attacks involved exploiting Cisco device vulnerability CVE-2023-20198.
- Hackers managed to steal call records and private communications of high-value targets.
- Canadian telecom network devices were compromised to enable traffic collection and reconnaissance.
- The threat actors also targeted entities outside telecom, possibly aiming for further information gathering.
Read More: https://www.securityweek.com/chinas-salt-typhoon-hackers-target-canadian-telecom-firms/