Salt Typhoon
Also known as: GhostEmperor, FamousSparrow, Earth Estries
Overview
Chinese MSS-linked group behind the largest telecom breach in US history. Compromised 12+ US telecom providers and accessed lawful intercept systems.
MITRE ATT&CK Coverage
Recon
Res Dev
Init Access
Execution
Persistence
Priv Esc
Def Evasion
Cred Access
Discovery
Lat Move
Collection
C2
Exfil
Impact
4 of 14 tactics observed
Raw TTPs
Telecom Infrastructure ExploitationLawful Intercept AbuseRouter ImplantsKernel RootkitsLiving-off-the-Land