CISO Tradecraft®

#210 - Salt Typhoon and Vulnerable Telecoms

17 snips
Dec 9, 2024
Join cybersecurity experts Adam Isles and Andreas Kurland from the Chertoff Group as they delve into the pressing 'Salt Typhoon' threat from state actors targeting telecoms. They explore the vulnerabilities within telecommunications infrastructure, emphasizing the importance of encryption and secure communication methods. Learn about the risks of messaging platforms, voice communication security, and best practices for maintaining privacy during virtual meetings. They offer actionable insights to enhance corporate cybersecurity and protect against sophisticated attacks.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Chinese Cyberattacks

  • Salt Typhoon, Volt Typhoon, and Flax Typhoon are Chinese state-sponsored cyberattacks targeting different sectors.
  • Volt Typhoon targeted critical infrastructure for strategic access, Flax Typhoon involved IoT botnets, and Salt Typhoon focused on the telecom sector.
ADVICE

MFA and Telecom Risks

  • CISOs should evaluate their enterprise's risk regarding reliance on telecom providers for MFA.
  • Consider push notifications over SMS and have backup authentication methods in case of network outages.
ADVICE

Messaging Ecosystem Security

  • Be mindful of security risks when transitioning between messaging ecosystems like Apple and Android.
  • Different ecosystems have varying security features, impacting corporate communication security.
Get the Snipd Podcast app to discover more snips from this episode
Get the app