back to article China's Salt Typhoon spies spotted on US govt networks before telcos, CISA boss says

Beijing's Salt Typhoon cyberspies had been seen in US government networks before telcos discovered the same foreign intruders in their own systems, according to CISA boss Jen Easterly. Speaking at a Foundation for Defense of Democracies (FDD) event on Wednesday, the agency director said her threat hunters detected the Chinese …

  1. beast666 Silver badge

    "The days of thunder begin on Monday"

  2. VoiceOfTruth

    "China is the most persistent and serious cyber threat to the nation and to our national critical infrastructure,"

    On the other hand, the USA is the most persistent and serious cyber threat to the whole planet. When the USA stops spying, including on supposed allies, it can complain. Until then, it's STFU.

    1. Anonymous Coward
  3. PhilipN Silver badge

    "Beijing's Salt Typhoon cyberspies.."

    El Reg knows this how? Despite countless reports over a long period we have never seen evidence of the connection.

    I thought cyber-security was supposed to be punctilious instead of doing a BOFH.

  4. johnrobyclayton

    Chicken or Egg?

    What happened first?

    Gov hacked to get the keys to Telcos?

    Or

    Telcos hacked to get the keys to Gov?

    How deep is the access that they have to each other?

    Hack a low level Gov function to

    hack a low level Telco function to

    hack a higher level Gov function to

    hack a higher level Telco functioin to

    ...

    ...

    ...

    Keeping control plane separate from infrastructure plane is just good security.

    Probably not done as much as it should have been.

    Not as high a priority as giving Gov every bit of access they want to engage in any sticky beaking they can think up a reason for though.

  5. fg_swe Silver badge

    Cyber "Security"

    Does this thing actually exist, if it does not work for the most powerful organization ?

    Better go back to Paper Security ?

  6. Anonymous Coward
    Anonymous Coward

    Ha....."The Other"......"The Big Lie"......

    So.....we have heard this before!

    To get unity at home......paint a picture of some "bad" "other".......

    To get people to believe....invent a lie.....just make sure that:

    (1) It's a Big Lie

    (2) It's repeated...over and over and over......

    Funny that this two pronged approach to public relations was invented long ago in Berlin........

    Oh...and by the way, don't mention the billions spent at home (in Fort Meade).........

    .....or the billions spent abroad on the NSO.........

    1. IGnatius T Foobar !

      Re: Ha....."The Other"......"The Big Lie"......

      Funny that this two pronged approach to public relations was invented long ago in Berlin........

      Goebbels and Godwin, party of two ... your table is ready

  7. Anonymous Coward
    Anonymous Coward

    Question

    I read several IT news sources a day, I see reports of attacks from governments (RU, C, NK, Isreal, and a few others) - but what I hardly ever see are reports of the USA (gov) hacking into other countries. I know they spy the F out of their own people, but who else? does anyone report on it?

    Can someone share a news source for those? 'cause to me, it looks like the US is not doing it's fair share of infiltrating other countries.

    Thanks

    1. Anonymous Coward
      Anonymous Coward

      Re: Question

      Just because it's better at hiding its attacks...

      Stuxnet is one. The Equation Group isn't just sitting around all day, what are they doing?

      The CIA and Central America?

      Militias and Afghanistan?

      The US was pushing the whole non-Chinese world to use its network gear, because can't trust China -- the Huawei stuff has unknown holes that the Chinese will take advantage of! Instead, install the US gear that has US-government-mandated backdoors -- er, that China is now taking advantage of. Not that the US would *ever* use its own mandated access to look into what sovereign nations are doing behind the scenes. Of course, there are no "reports" of that happening - but we all know it goes without saying.

      The Five Eyes - it's not just about spying on their own citizens. Isn't much of their justification spying on foreign nationals -- that converse with five-eyes members? Or, at least, the foreign nationals' communications end up transiting a five-eyes country.

      Admittedly, the US doesn't typically attack civilians, except in the boots-on-the-ground sense, or the gunship sense, and these are only covered by Wikileaks as opposed to mainstream media. Hand-wave, hand-wave, you just don't hear about it. To consider it on English-speaking media is almost conspiracy. On the other hand, occasionally you hear that China puts out a news piece to their citizens about US attacks - but that piece is really never translated to the west. Suppose that a stuxnet-like operation caused unexpected systems failures at a Wuhan lab, leading to the release of Covid. It's conspiracy-theory land.

      - "BEIJING — China has accused the United States of mounting cyberattacks against Chinese government, scientific, aviation and other technical institutions for the past 11 years." "Zhao countered that the U.S. launches the greatest number of cyberattacks around the world each year, citing a 2020 report of Chinese internet security firm 360 that supposedly fingered the Central Intelligence Agency as the culprit behind the hackings of key Chinese companies and government institutions for more than a decade." [blogs.360.cn post/APT-C-39_CIA_EN.html]

  8. Professor_Iron

    Back doors are the new front doors

    Maybe just stop using Cisco gear on your network if you want it to be secure. The gov't should know it, they put massive holes on them in the first place.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like