Salt Typhoon caught hacking a European Telco, says Darktrace

Salt Typhoon Hacking Incident

A European telecoms company was targeted by a hacking group, likely to be the Chinese state-aligned hacking group Salt Typhoon, according to security vendor Darktrace.

The attempt to infiltrate the unnamed company’s networks occurred in July, with the attackers exploiting a vulnerability in a Citrix NetScaler Gateway appliance before installing a backdoor on several Citrix Virtual Delivery Agent (VDA) hosts.

About Salt Typhoon

Salt Typhoon (UNC5807) is a prolific cyberespionage group believed to be part of China’s Ministry of State Security.

Salt Typhoon's actions were described by one senator as the “worst telecom hack” in US history.

Author's summary: Salt Typhoon hacking group targets European telco.

more

Computing Computing — 2025-10-21

More News