CISA urges switch to Signal-like encrypted messaging apps after telecom hacks

Teilen:

Today, CISA urged senior government and political officials to switch to end-to-end encrypted messaging apps like Signal following a wave of telecom breaches across dozens of countries, including eight carriers in the United States.

CISA and the FBI confirmed these breaches in late October after reports that the Salt Typhoon, a Chinese-backed threat group, had hacked multiple U.S. telcos, including T-Mobile, AT&T, Verizon, and Lumen Technologies. Although the timing of the breaches is unclear, the attackers reportedly had access for “months or longer.”

Also tracked as Ghost Emperor, Earth Estries, FamousSparrow, and UNC2286, Salt Typhoon has been active since at least 2019, breaching telecom companies and government entities across Southeast Asia.

While today’s guidance applies to highly targeted individuals likely possessing information of interest to the Chinese cyberspies, the measures can help anyone concerned about the telecom hacks protect their data and information from hackers who successfully breach their mobile carriers’ systems.

“Highly targeted individuals should assume that all communications between mobile devices—including government and personal devices—and internet services are at risk of interception or manipulation,” the U.S. cybersecurity agency said on Wednesday.

“CISA strongly urges highly targeted individuals to immediately review and apply the best practices provided in the guidance to protect mobile communications, including consistent use of end-to-end encryption.”

CISA Salty Typhoon guidance

Signal nominated as secure messaging alternative

In today’s advisory, CISA recommends switching to an end-to-end encrypted messaging application, naming Signal as an alternative for mobile communication across multiple mobile (iOS, Android) and desktop (macOS, Windows, and Linux) platforms.

“Adopt a free messaging application for secure communications that guarantees end-to-end encryption, such as Signal or similar apps. CISA recommends an end-to-end encrypted messaging app that is compatible with both iPhone and Android operating systems, allowing for text message interoperability across platforms,” CISA said today.

It also recommends using Fast Identity Online (FIDO) phishing-resistant multifactor authentication (MFA) together with hardware-based FIDO security keys (e.g., Yubico or Google Titan) or passkeys to secure Microsoft, Apple, and Google accounts. Where possible, options like Google’s Advanced Protection (APP) program or Apple’s Lockdown Mode should also be enabled to defend against account hijacking and phishing attacks.

Additionally, CISA advises avoiding SMS-based MFA, using a password manager to store and protect passwords from attackers, and setting up a telco PIN or passcode for sensitive operations like porting your phone number and blocking SIM swapping attempts.

The cybersecurity agency also advocates for regularly updating software to patch recently disclosed security vulnerabilities, switching to the latest available hardware for critical security features that older devices cannot provide or support, and against using commercial virtual private networks (VPNs), which might have “questionable security and privacy policies” and will increase the attack surface.

Two weeks ago, CISA and FBI officials urged Americans to use end-to-end encrypted messaging apps to minimize the risk of communications interception. They also released guidance to help telecom system admins and engineers harden their systems against Salt Typhoon attacks.

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
11:28 am, Mai 9, 2025
Wetter-Symbol 16°C
L: 15° | H: 18°
wenige Wolken
Luftfeuchtigkeit: 56 %
Druck: 1020 mb
Wind: 11 mph E
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 20%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 5:17 am
Sonnenuntergang: 8:35 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
15° | 18°°C 0 mm 0% 12 mph 63 % 1022 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
9° | 20°°C 0 mm 0% 12 mph 86 % 1021 mb 0 mm/h
So. Mai 11 10:00 pm
Wetter-Symbol
11° | 23°°C 0.94 mm 94% 12 mph 86 % 1015 mb 0 mm/h
Mo. Mai 12 10:00 pm
Wetter-Symbol
12° | 21°°C 0.97 mm 97% 11 mph 95 % 1016 mb 0 mm/h
Di. Mai 13 10:00 pm
Wetter-Symbol
13° | 21°°C 0.46 mm 46% 11 mph 77 % 1022 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
16° | 17°°C 0 mm 0% 12 mph 50 % 1021 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
17° | 17°°C 0 mm 0% 11 mph 43 % 1020 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
15° | 15°°C 0 mm 0% 9 mph 40 % 1020 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
12° | 12°°C 0 mm 0% 8 mph 63 % 1022 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
12° | 12°°C 0 mm 0% 6 mph 74 % 1021 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
9° | 9°°C 0 mm 0% 4 mph 86 % 1020 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
11° | 11°°C 0 mm 0% 6 mph 79 % 1020 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
17° | 17°°C 0 mm 0% 8 mph 47 % 1020 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€91,699.80
3.28%
Ethereum(ETH)
€2,081.36
20.39%
Fesseln(USDT)
€0.89
-0.01%
XRP(XRP)
€2.11
6.92%
Solana(SOL)
€149.15
8.15%
USDC(USDC)
€0.89
0.01%
Dogecoin(DOGE)
€0.183800
12.27%
Shiba Inu(SHIB)
€0.000013
13.00%
Pepe(PEPE)
€0.000012
43.04%
Peanut das Eichhörnchen(PNUT)
€0.243882
58.27%
Nach oben scrollen