An advisory warning about cyberattacks by the China-affiliated Salt Typhoon actors to compromise key international telecommunications companies as part of a cyber espionage campaign has been released by the U.S. Federal Bureau of Investigation (FBI) and the Canadian Centre for Cyber Security.
In mid-February 2025, the attackers gained access to configuration files from three network devices registered to a Canadian telecommunications business by taking use of a serious Cisco IOS XE software flaw (CVE-2023-20198, CVSS score: 10.0).
Additionally, it is claimed that the threat actors altered at least one of the files in order to set up a Generic Routing Encapsulation (GRE) tunnel, which allowed for network traffic gathering. The targeted company’s name was not revealed.
The agencies stated that the targeting of Canadian devices may allow the threat actors to gather information from the compromised networks and use it as leverage to infiltrate other devices read more about China-linked Salt Typhoon Exploits Critical Cisco Vulnerability to Target Canadian Telecom.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
