‘Salt Typhoon’ Hackers Infiltrated National Guard, Had 9 Months of Access: Memo
UNITED STATES, JUL 16 – Salt Typhoon accessed military network data for nine months, stealing credentials and network diagrams to aid further cyber espionage and attacks on U.S. critical infrastructure, officials said.
- In 2024, the Chinese government-backed hacking group Salt Typhoon gained unauthorized access to a National Guard system within a U.S. state and operated undetected for nine months, from March through December.
- During this operation, Salt Typhoon exploited weaknesses in networking hardware to exfiltrate 1,462 configuration files from nearly 70 entities within the U.S. government and essential infrastructure sectors spanning 12 industries.
- During the breach, Salt Typhoon obtained network layouts, login details for system administrators, personal data of personnel, and communication records with units across all 50 states and multiple U.S. territories, which facilitated subsequent intrusions.
- A memo issued by the Department of Homeland Security in early June confirmed the breach and advised cybersecurity teams to patch vulnerabilities such as CVE-2024-3400, deactivate unnecessary services, segment SMB traffic, enable SMB signing, and strengthen access controls.
- The breach highlights persistent vulnerabilities in U.S. military and critical networks, with investigations ongoing and warnings that unresolved cybersecurity gaps allow continued foreign access.
18 Articles
18 Articles
National Guard 'compromised' in massive Chinese hack on Hegseth's Pentagon
An elite group of Chinese hackers infiltrated the National Guard over nine months, according to a report from NBC News. The Department of Homeland Security initially acknowledged the hack, known by its nickname "Salt Typhoon," in a June memo. It says the hacking group “extensively compromised a U.S....
Vail Symposium explores the escalation of cyberwarfare in global politics
Cyberwarfare is a serious and growing problem, consisting of internet-based attacks designed to disrupt, damage or destroy a nation’s critical infrastructure, government systems or military networks. These attacks can have far-reaching consequences, including financial damage, loss of sensitive information and disruption of essential services like power grids and communication networks. On Monday, July 21, at Eagle River Presbyterian Church, Vai…
Chinese hackers breached National Guard to steal network configurations
The Chinese state-sponsored hacking group known as Salt Typhoon breached and remained undetected in a U.S. Army National Guard network for nine months in 2024, stealing network configuration files and administrator credentials that could be used to compromise other government networks. [...]
‘Salt Typhoon’ hackers infiltrated National Guard, had 9 months of access: Memo
Chinese hackers infiltrated the network of at least one state’s National Guard and remained in its systems for over nine months, a Department of Homeland Security memo says. The findings, as first reported by NBC News, shed new light on the extent of the hacking campaign against the United States by China’s “Salt Typhoon.”The June memo, based on an investigation by the Department of Defense, says the Chinese hackers “extensively compromised” an …
Salt Typhoon hackers compromise a state’s Army National Guard network
Hackers connected to China extensively compromised a U.S. state’s Army National Guard network starting last March. That’s according to a June intelligence memo from the Department of Homeland Security. It details the “Salt Typhoon” group’s intrusion into National Guard networks and subsequent theft of sensitive data. DHS said Salt Typhoon’s successful hack could undermine the National Guard’s efforts to protect American critical infrastructure. …
Salt Typhoon hack targeted National Guard computer networks, DHS memo says
Scripps News has confirmed that China breached the computer network of the Army National Guard in at least one U.S. state for months.The breach came as part of the so-called Salt Typhoon hack, which has been an ongoing breach into a wide range of U.S. telecom systems for at least a year. It is one of the most significant cyber espionage breaches in U.S. history.Scripps News obtained a memo from the Department of Homeland Security outlining the s…
Coverage Details
Bias Distribution
- 90% of the sources are Center
To view factuality data please Upgrade to Premium