Chinese hackers have infiltrated the networks of major U.S. broadband providers, gaining access to systems used for court-authorized wiretapping.
According to a Reuters report, the attack targeted the networks of Verizon Communications, AT&T, and Lumen Technologies.
The breach raises severe concerns about the security of sensitive communications data handled by these companies.
The intrusion, which may have persisted for several months, allowed hackers to access network infrastructure integral to complying with U.S. court requests for communication data.
Analyse Any Suspicious Links Using ANY.RUN’s New Safe Browsing Tool: Try for Free
Besides wiretap systems, the attackers reportedly accessed other internet traffic data, potentially compromising sensitive information.
U.S. investigators have identified the hacking group responsible as “Salt Typhoon,” which has as its primary motive intelligence gathering.
In response to the allegations, China’s foreign ministry expressed unawareness of the attack but criticized the U.S. for allegedly framing China in previous incidents.
The ministry emphasized that cybersecurity is a global challenge requiring international cooperation, not blame games. This incident adds to ongoing tensions between the two nations over cybersecurity issues.
Earlier this year, another Chinese hacking group, “Flax Typhoon,” was disrupted by U.S. law enforcement after a similar campaign dubbed “Volt Typhoon.”
Verizon and AT&T have yet to comment on the breach, while Lumen Technologies declined to provide a statement.
This breach underscores the critical need for enhanced cybersecurity measures across essential communication infrastructures as investigations continue.
Upgrade Your Cybersecurity Skills With 100+ Premium Cyber Security Courses Online - Enroll Here
Verizon Business's 2025 Data Breach Investigations Report (DBIR), released on April 24, 2025, paints a…
A recent cyber espionage campaign by the notorious Lazarus Advanced Persistent Threat (APT) group, tracked…
In a alarming cybersecurity breach uncovered by Cisco Talos in 2023, a critical infrastructure enterprise…
In a startling revelation from Microsoft Threat Intelligence, threat actors are increasingly targeting unsecured Kubernetes…
A recently uncovered cyberattack campaign has brought steganography back into the spotlight, showcasing the creative…
Threat actors exploited a zero-day vulnerability in Ivanti Connect Secure, identified as CVE-2025-0282, to deploy…