Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

China-related salt typhoons exploit critical Cisco vulnerabilities to target Canadian communications

Court filings reveal early work of Openai and IO on AI devices

Tesla’s Robotaxis is already attracting attention from federal safety regulators

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » China-related salt typhoons exploit critical Cisco vulnerabilities to target Canadian communications
Identity

China-related salt typhoons exploit critical Cisco vulnerabilities to target Canadian communications

userBy userJune 24, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

June 24, 2025Ravi LakshmananCyberspy/Chinese hacker

Salted typhoon linked to China

The Canadian Centre for Cybersecurity and the US Federal Investigation Agency (FBI) have issued an advisory warning for cyberattacks mounted by Chinese-linked chloride actors to breach major global communications providers as part of their cyberespionage activities.

The attacker utilized the critical Cisco IOS XE software (CVE-2023-20198, CVSS score: 10.0) to access configuration files from three network devices registered with Canadian telecommunications companies in mid-February 2025.

The threat actor is also said to have modified at least one file to configure a general Routing Encapsulation (GRE) tunnel, allowing for traffic collection from the network. The targeted company name has not been revealed.

Cybersecurity

Saying that targeting is likely beyond the communications sector, the agency said targeting Canadian devices allows threat actors to collect information from the compromised network and use them as leverage to violate additional devices.

“In some cases, we highly appreciate that the threat activator’s activities will be limited to network reconnaissance,” the alert said.

The agency further noted that Edge Network Devices remains an attractive target for Chinese state-sponsored threat actors seeking to breach and maintain permanent access to telecom service providers.

The findings, together with recorded future previous reports detailing the exploitation of CVE-2023-20198 and CVE-2023-20273, will infiltrate telecoms and internet companies in the US, South Africa and Italy, leverage nutrition to install green cinquenels for long-term access and data expansion.

UK NCSC warns about shoe shelf and umbrella stand malware targeting Fortinet devices

The development comes as the UK National Cybersecurity Centre (NCSC) unveiled two different malware families called shoe shelves and umbrella stands targeting the Fortigate 100D series firewall created by Fortinet.

Shoe racks are post-explosion tools for remote shell access and TCP tunnels through compromised devices, while umbrella stands are designed to execute shell commands issued by attacker control servers.

Cybersecurity

Interestingly, the shoe rack is based in part on a public tool named Reverse_Shell, which coincidentally recycled by a China-Nexus threat cluster called PurpleHaze and devises the Windows implant codename Goreshell. It is not clear at present whether these activities are related.

The NCSC said it has identified several similarities between the umbrella stand and Coathanger, a backdoor that was previously used by Chinese state-backed hackers in cyberattacks targeting Dutch military networks.

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleCourt filings reveal early work of Openai and IO on AI devices
user
  • Website

Related Posts

The Digital Twin Revolution: Reshaping Industry 4.0

June 23, 2025

Echo Chamber Jailbreak Tricks LLMS To generate harmful content like Openai and Google

June 23, 2025

DHS warns Proilan hackers who are likely to target US networks after Iran’s nuclear attack

June 23, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

China-related salt typhoons exploit critical Cisco vulnerabilities to target Canadian communications

Court filings reveal early work of Openai and IO on AI devices

Tesla’s Robotaxis is already attracting attention from federal safety regulators

The Digital Twin Revolution: Reshaping Industry 4.0

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

The Digital Twin Revolution: Reshaping Industry 4.0

1-inch rollout expanded bug bounty features rewards up to $500,000

PhysicsX raises $135 million to bring AI-first engineering to aerospace, automobiles and energy

Deadline approach to speaker proposals for OpenSSL Conference 2025 held in Prague

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.