https://www.theregister.com/2024/12/09/white_house_salt_typhoon/ # # Sign in / up The Register(r) -- Biting the hand that feeds IT # # # Topics Security Security All SecurityCyber-crimePatchesResearchCSO (X) Off-Prem Off-Prem All Off-PremEdge + IoTChannelPaaS + IaaSSaaS (X) On-Prem On-Prem All On-PremSystemsStorageNetworksHPCPersonal TechCxOPublic Sector (X) Software Software All SoftwareAI + MLApplicationsDatabasesDevOpsOSesVirtualization (X) Offbeat Offbeat All OffbeatDebatesColumnistsScienceGeek's GuideBOFHLegalBootnotesSite NewsAbout Us (X) Special Features Special Features All Special Features Cybersecurity Month VMware Explore Blackhat and DEF CON Cloud Infrastructure Month Malware Month The Reg in Space Spotlight on RSA Vendor Voice Vendor Voice Vendor Voice All Vendor Voice Pure Storage Kilka Tech HERE and AWS Vonage GE Vernova with AWS Amazon Web Services (AWS) New Horizon in Cloud Computing DDN Google Cloud Data Transformation Google Gemini Hewlett Packard Enterprise: Edge-to-Cloud Platform Intel vPro VMware (X) Resources Resources Whitepapers Webinars & Events Newsletters [cso] CSO 4 comment bubble on white China's Salt Typhoon recorded top American officials' calls, says White House 4 comment bubble on white No word yet on who was snooped on. Any bets? icon Jessica Lyons Mon 9 Dec 2024 // 19:01 UTC # Chinese cyberspies recorded "very senior" US political figures' calls, according to White House security boss Anne Neuberger. Neuberger, America's deputy national security advisor for cyber and emerging technology, spoke at the Manama Dialogue regional security conference over the weekend. During the Bahrain event, she told reporters that the Salt Typhoon campaign was a "focused" operation targeting high-level people in politics for espionage purposes. "We believe ... the actual number of calls that they took, recorded and took, was really more focused on very senior political individuals," Neuberger said, according to media reports. She did not disclose who the snoops targeted. [cso] During a media briefing last week, Neuberger confirmed eight US telecom providers had been compromised by Salt Typhoon along with organizations in "dozens of countries around the world." [cso] [cso] "We believe this is a Chinese espionage program focused, again, on key government officials, and corporate intellectual property," Neuberger said at the time. This briefing came a day after FBI and US Cybersecurity and Infrastructure Security (CISA) officials told reporters that while the Chinese government-backed spies did steal a large amount of records, including Americans' metadata, they also swiped a much smaller number of "private communications of a limited number of individuals who are primarily involved in the government or political activities," according to a senior FBI official. "This would have contained call and text contents." * T-Mobile US CSO: Spies jumped from one telco to another in a way 'I've not seen in my career' * Reminder: China-backed crews compromised 'multiple' US telcos in 'significant cyber espionage campaign' * US lawmakers seek answers on alleged Salt Typhoon breach of telecom giants * Would banning ransomware insurance stop the scourge? Salt Typhoon also compromised wiretapping systems used by law enforcement - although that wasn't the focus of the spying intrusions, the official added. "Just want to set the record straight that PRC started this campaign with much broader aims," the agent said. Neuberger's comments over the weekend come as the US Senate Commerce subcommittee gears up for a Wednesday hearing on "Communications Networks Safety and Security" that will investigate the risk posed by cyberspies and other digital criminals infiltrating American telecom systems. [cso] Salt Typhoon, and the larger threat posed by China, are expected to eat up much of the agenda, and Tim Donovan, president and CEO of the Competitive Carriers Association, is slated to testify before the subcommittee. (r) Get our Tech Resources # Share More about * China * Cybercrime * Security More like these x More about * China * Cybercrime * Security * Telecommunications Narrower topics * 2FA * 5G * Advanced persistent threat * Application Delivery Controller * AT&T * Authentication * BEC * Black Hat * British Telecom * BSides * Bug Bounty * CHERI * China Mobile * China telecom * China Unicom * CISO * Comcast * Common Vulnerability Scoring System * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Cyberspace Administration of China * Data Breach * Data Protection * Data Theft * DDoS * DEF CON * Digital certificate * EE * Emergency Services Network * Encryption * Ericsson * Exploit * Firewall * Great Firewall * Hacker * Hacking * Hacktivism * Hong Kong * Identity Theft * Incident response * Information Technology and the People's Republic of China * Infosec * Infrastructure Security * JD.com * Kenna Security * Mobile Network * National Broadband Network * NCSAM * NCSC * NTT * Orange * Palo Alto Networks * Password * Phishing * Quantum key distribution * Ransomware * Remote Access Trojan * REvil * RSA Conference * Semiconductor Manufacturing International Corporation * Shenzhen * Spamming * Spyware * Surveillance * Telecommunications Act of 1996 * TETRA * TLS * Trojan * Trusted Platform Module * Uyghur Muslims * Verizon * Vodafone * Voice over IP * Vulnerability * Wannacry * Zero trust Broader topics * APAC * Sector More about # Share 4 comment bubble on white COMMENTS More about * China * Cybercrime * Security More like these x More about * China * Cybercrime * Security * Telecommunications Narrower topics * 2FA * 5G * Advanced persistent threat * Application Delivery Controller * AT&T * Authentication * BEC * Black Hat * British Telecom * BSides * Bug Bounty * CHERI * China Mobile * China telecom * China Unicom * CISO * Comcast * Common Vulnerability Scoring System * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Cyberspace Administration of China * Data Breach * Data Protection * Data Theft * DDoS * DEF CON * Digital certificate * EE * Emergency Services Network * Encryption * Ericsson * Exploit * Firewall * Great Firewall * Hacker * Hacking * Hacktivism * Hong Kong * Identity Theft * Incident response * Information Technology and the People's Republic of China * Infosec * Infrastructure Security * JD.com * Kenna Security * Mobile Network * National Broadband Network * NCSAM * NCSC * NTT * Orange * Palo Alto Networks * Password * Phishing * Quantum key distribution * Ransomware * Remote Access Trojan * REvil * RSA Conference * Semiconductor Manufacturing International Corporation * Shenzhen * Spamming * Spyware * Surveillance * Telecommunications Act of 1996 * TETRA * TLS * Trojan * Trusted Platform Module * Uyghur Muslims * Verizon * Vodafone * Voice over IP * Vulnerability * Wannacry * Zero trust Broader topics * APAC * Sector TIP US OFF Send us news --------------------------------------------------------------------- Other stories you might like How Chinese insiders are stealing data scooped up by President Xi's national surveillance system Feature 'It's a double-edged sword,' security researchers tell The Reg Public Sector8 Dec 2024 | 31 Telco security is a dumpster fire and everyone's getting burned Opinion The politics of cybersecurity are too important to be left to the politicians Security2 Dec 2024 | 63 China has utterly pwned 'thousands and thousands' of devices at US telcos Senate Intelligence Committee chair says his 'hair is on fire' as execs front the White House Cyber-crime25 Nov 2024 | 51 Fortify your data How cyber resilient storage hardware can defeat ransomware Sponsored Feature [cso] Microsoft: Another Chinese cyberspy crew targeting US critical orgs 'as of yesterday' Redmond threat intel maven talks explains this persistent pain to The Reg Security6 Dec 2024 | 16 T-Mobile US CSO: Spies jumped from one telco to another in a way 'I've not seen in my career' Interview Security chief talks to El Reg as Feds urge everyone to use encrypted chat CSO5 Dec 2024 | 54 T-Mobile US 'monitoring' China's 'industry-wide attack' amid fresh security breach fears updated Un-carrier said to be among those hit by Salt Typhoon, including AT&T, Verizon Networks18 Nov 2024 | 2 T-Mobile US takes a victory lap after stopping cyberattacks: 'Other providers may be seeing different outcomes' Funny what putting more effort and resources into IT security can do CSO27 Nov 2024 | 9 Salt Typhoon's surge extends far beyond US telcos Plus, a brand-new backdoor, GhostSpider, is linked to the cyber spy crew's operations Security27 Nov 2024 | 7 Salt Typhoon forces FCC's hand on making telcos secure their networks Proposal pushes stricter infosec safeguards after Chinese state baddies expose vulns Security6 Dec 2024 | 2 Crooks stole AWS credentials from misconfigured sites then kept them in open S3 bucket Exclusive ShinyHunters-linked heist thought to have been ongoing since March Research9 Dec 2024 | Chinese cyberspies, Musk's Beijing ties, labelled 'real risk' to US security by senator Meet Liminal Panda, which prowls telecom networks in South Asia and Africa CSO20 Nov 2024 | 32 The Register icon Biting the hand that feeds IT About Us* * Contact us * Advertise with us * Who we are Our Websites* * The Next Platform * DevClass * Blocks and Files Your Privacy* * Cookies Policy * Privacy Policy * Ts & Cs * Do not sell my personal information Situation Publishing Copyright. All rights reserved (c) 1998-2024 no-js