Salt Typhoon

Actor Type Nation State
Attributed to Nation China
Directly Linked Intrusion Sets Operator Panda , Earth Estries , GhostEmperor , FamousSparrow

Salt Typhoon is a threat actor tracked by researchers at Microsoft. The group is believed to be sponsored by the People's Republic of China (PRC), with reports that the group targeted US telecommunications companies (including Verizon, AT&T, and Lumen Technologies) in order to surveil PRC targets.

The group has been linked to other APT aliases including Famous Sparrow (ESET), Ghost Emperor (Kaspersky), UNC2286 (Mandiant/Google) and Earth Estries (Trend Micro).

Cyber Threat Graph Context

Explore how this Intrusion Set relates to the wider threat graph

References