You are here

Threat Awareness – New Details on Salt Typhoon’s Breach of ISPs in the U.S. and Abroad

Threat Awareness – New Details on Salt Typhoon’s Breach of ISPs in the U.S. and Abroad

Created: Tuesday, December 10, 2024 - 14:09
Categories:
Cybersecurity, Security Preparedness

The scope of the Salt Typhoon Campaign is continues to increase as senior White House officials revealed last week that telecommunications companies in dozens of countries have been breached by Salt Typhoon, eight of which are major internet service providers (ISPs) located in the U.S.

This new information follows a string of incidents over the past few months where Salt Typhoon actors linked to the Chinese Government breached a handful of U.S. internet service providers (ISPs) including Verizon, AT&T, and Lumen Technologies. Investigators have previously noted that these attackers have compromised America’s broadband networks and appear to have access deep into the routing functions of major ISPs, giving them the ability to manipulate network routing.

Given the scope of the breach and the propensity for PRC-affiliated actors to target the water sector, WaterISAC highly recommends utilities continue to follow sector-specific guidance and remain alert to the ongoing situation. For more information, visit The Record.

Water Sector Cybersecurity Resources

Additional WaterISAC Resources