Get the latest tech news
U.S. And Allies Declare Salt Typhoon Hack A National Defense Crisis
FBI and allies declare Salt Typhoon cyber campaign a national defense crisis, exposing Chinese infiltration of global telecom networks across 80 countries.
The FBI, alongside U.S. and allied intelligence agencies, has declared the Salt Typhoon cyber campaign a national defense crisis after uncovering widespread infiltration of global telecommunications networks. Operators gained access by exploiting widely known vulnerabilities in networking equipment, including Ivanti Connect Secure (CVE-2024-21887), Palo Alto PAN-OS (CVE-2024-3400) and Cisco IOS XE (CVE-2023-20198 chained with CVE-2023-20273). Detection And Hunting: Organizations are instructed to monitor for telltale patterns such as high-port SSH services ending in “22,” double-encoded requests targeting Cisco IOS XE and packet captures with suspicious names like “tac.pcap.” Administrators are also warned to look for unexplained tunnels, redirections of TACACS+ traffic, or the sudden creation of privileged accounts.
Or read this on r/technology