A House panel report found that US telecommunications companies connected their systems to data centers in ways that created security vulnerabilities, potentially facilitating the Salt Typhoon cyberattacks.
According to the House panel investigation, American telcos exposed their infrastructure to compromise through inadequate security practices when integrating their systems with third-party data centers and related facilities.
The report identifies poor architectural decisions and insufficient network segmentation as key factors that allowed threat actors to exploit entry points. Salt Typhoon, a Chinese state-sponsored hacking group, leveraged these vulnerabilities to gain access to sensitive telecom networks beginning in mid-2023.
The investigation reveals that telcos failed to implement robust isolation protocols between their core systems and external data center connections. This created a pathway for attackers to move laterally through networks once initial access was obtained.
Specific security gaps cited in the report include inadequate authentication mechanisms, insufficient monitoring of data center connections, and lack of threat detection on interconnected systems. The panel found that companies prioritized connectivity and operational efficiency over security controls.
The Salt Typhoon campaign affected multiple major US carriers and reportedly enabled access to customer call records and text messages. The breach raised alarms about the vulnerability of critical telecommunications infrastructure to nation-state actors.
The House panel's findings underscore systemic weaknesses in how US telcos manage third-party infrastructure relationships. Experts note that similar architectural problems exist across the industry, potentially exposing other carriers to comparable attacks.
The report recommends mandatory security standards for data center connections, improved network segmentation requirements, and enhanced monitoring capabilities. It also calls for better information sharing between telcos and federal agencies on infrastructure vulnerabilities.
Telecommunications companies face mounting pressure to remediate these weaknesses before additional threat actors can exploit similar gaps. The findings contribute to broader concerns about the security posture of US critical infrastructure.
Security researchers have identified potential hardware backdoors in certain x86 processors. The findings, detailed in a GitHub repository called Rosenbridge, reveal vulnerabilities at the processor level that could allow unauthorized access.
Flock Safety, the traffic camera company, is expanding beyond law enforcement with plans to deploy dashcams in rideshare vehicles and offer coaching services to police departments.
A sharp rise in explicit deepfake images of UK children has been reported by an online safety service, as authorities warn that AI tools are making the creation of sexualized or 'nudified' content increasingly accessible.
Gen's latest threat report details two distinct attack campaigns exploiting compromised email accounts and clipboard manipulation to steal from businesses and cryptocurrency users.