Tag: Telecom networks

China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom Networks
News

China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom Networks

In order to carry out espionage on government networks, a long-running and ongoing effort linked to a China-nexus threat actor has implanted itself in telecom networks. Red Menshen, a threat cluster that is also monitored as Earth Bluecrow, DecisiveArchitect, and Red Dev 18, has been linked to the strategic positioning activity, which entails installing and maintaining covert access mechanisms within crucial locations. Since at least 2021, the group has a history of going on strike against telecom companies throughout the Middle East and Asia. The secret access methods are "some of the stealthiest digital sleeper cells" that have ever been seen in telecom networks, according to Rapid7. The campaign's use of cross-platform command frameworks, credential-harvesting tools, kernel-le...
Joint Advisory Warns of PRC-Backed Cyber Espionage Targeting Telecom Networks
News

Joint Advisory Warns of PRC-Backed Cyber Espionage Targeting Telecom Networks

Threat actors with ties to the People's Republic of China (PRC) have launched a widespread cyber espionage campaign against telecommunications companies, according to a joint alert released by the U.S., Canada, New Zealand, and Australia. According to government authorities, no new activity has been noticed; the identified exploitations or compromises linked to the activity of these threat actors are consistent with pre-existing vulnerabilities related to victim infrastructure. About six months after a probe into the intrusions began, U.S. officials said Tuesday that the threat actors are still active within U.S. telecommunications networks read more about Joint Advisory Warns of PRC-Backed Cyber Espionage Targeting Telecom Networks. Get up to date on the latest cybersecurity new...
China-Backed Hackers Leverage SIGTRAN, GSM Protocols to Infiltrate Telecom Networks
News

China-Backed Hackers Leverage SIGTRAN, GSM Protocols to Infiltrate Telecom Networks

Since at least 2020, a new cyber espionage organization with ties to China has been implicated in a number of targeted cyberattacks against telecommunications companies in South Asia and Africa with the intention of facilitating intelligence gathering. The opponent, known as Liminal Panda, is being tracked by cybersecurity firm CrowdStrike, which claims that it has extensive knowledge of telecommunications networks, the protocols that support them, and the different linkages between providers. Custom tools that enable data exfiltration, command-and-control (C2), and clandestine access are part of the threat actor's malware arsenal read more about China-Backed Hackers Leverage SIGTRAN, GSM Protocols to Infiltrate Telecom Networks. Get up to date on the latest cybersecurity news an...