A European telecoms company was targeted by a hacking group, likely to be the Chinese state-aligned hacking group Salt Typhoon, according to security vendor Darktrace.
The attempt to infiltrate the unnamed company’s networks occurred in July, with the attackers exploiting a vulnerability in a Citrix NetScaler Gateway appliance before installing a backdoor on several Citrix Virtual Delivery Agent (VDA) hosts.
Salt Typhoon (UNC5807) is a prolific cyberespionage group believed to be part of China’s Ministry of State Security.
The incident was described by one senator as the “worst telecom hack” in US history.
Author's summary: Salt Typhoon hacking group targets European telco.