Posts tagged with “nation-state hackers”

Salt Typhoon prompts bill for voluntary telecom cyber rules

Two US senators from opposite parties want the telecommunications industry to follow a common set of cybersecurity best practices. Adoption would be voluntary, and there would be an optional certification for companies that can show they follow them.

Sens. Mark Warner (D-VA) and Ted Cruz (R-TX) introduced the Telecommunications Cybersecurity and Resilience Act on Thursday. They pointed to the Salt Typhoon campaign, in which Chinese hackers broke into nearly all of the major US telecom providers over several years.

“The Salt Typhoon intrusion was the worst telecom hack in our nation’s history and showed us just how vulnerable our critical infrastructure is, but it does not have to be that way,” Warner said. “If telecommunications companies adopt cybersecurity best practices, our networks can be more resilient.”

Read More


Kyiv internet outages follow Russian strikes on data centers

Russian drone attacks on Kyiv this week hit data centers and telecom facilities, cutting or degrading internet access for thousands of people in the Ukrainian capital and the surrounding region.

Internet monitoring group NetBlocks reported partial connectivity losses at no fewer than four providers after Wednesday's strike. The affected networks were Kyiv Link, Pautina, Utels and Crazy Network, which serve Kyiv as well as other parts of Ukraine.

According to Ukraine's Ministry of Digital Transformation, roughly 100,000 households in Kyiv and the wider region had internet problems after the attack. Repair crews were sent out to assess the damage and bring stable connections back online.

Read More


Roundcube SQL injection flaw now exploited in attacks

Attackers are exploiting a high-severity SQL injection vulnerability in Roundcube Webmail that was patched in May, according to the Canadian Centre for Cyber Security.

The flaw, tracked as CVE-2026-48842, sits in virtuser_query, a plugin that ships with Roundcube. The plugin handles user lookups against a database and maps users to their email addresses. The Roundcube security team described the bug as a pre-authenticated SQL injection, which means an attacker does not need to log in to reach it.

Roundcube Webmail is an open-source, browser-based email client that talks to mail servers over IMAP. Thousands of services use it as their default mail interface, and it has millions of users. It also comes pre-installed with cPanel, a popular control panel that hosting providers give customers to manage websites and email.

Read More


Bitget hack: $351.6M stolen, North Korea suspected

Cryptocurrency exchange Bitget has disclosed that attackers took $351.6 million from its hot and warm wallets. These are wallets that stay connected to the platform's systems for day-to-day operations. The company links the theft to North Korean hackers.

Bitget spotted the breach on Thursday evening, when its security systems flagged several unauthorized transfers from a small number of crypto wallets. It has paused all withdrawals while it investigates. Law enforcement agencies, on-chain security institutions, and experts from Mandiant and SlowMist are assisting with the investigation.

Cold wallets and customer balances untouched

The exchange says the damage is limited to part of its infrastructure. Its cold wallets, which are kept offline, were not affected. According to the company, most of the assets on the platform are also safe.

Read More