Singtel targeted by Chinese hackers in "test run" for attacks on US targets

China
(Image credit: Shutterstock)

  • Anonymous tipsters say Singtel was breached in June 2024
  • The group behind the attack is Volt Typhoon, a known state-sponsored actor
  • Assault was reportedly a test run before attacks on telecoms in the US

Infamous Chinese cyber-espionage threat actor Volt Typhoon, allegedly tied to the country’s government, breached Singtel last summer.

A report on Bloomberg, citing “two people familiar with the matter”, claims hackers used a webshell to breach Singtel, which commented on the breach, but did not outright confirm it.

"We understand the importance of network resilience, especially because we are a key infrastructure service provider,” Singtel said in a statement. “That's why we adopt industry best practices and work with industry-leading security partners to continuously monitor and promptly address the threats that we face on a daily basis. We also regularly review and enhance our cybersecurity capabilities and defenses to protect our critical assets from evolving threats."

Practicing on Singtel

The anonymous tipsters also revealed Volt Typhoon wasn’t really that interested in Singtel’s intel, but rather used it as practice grounds, a stepping stone to its actual goal. Apparently, the breach was “a test run by China for further hacks against US telecommunications companies.”

In early February 2024, US security agencies (CISA, NSA, FBI, and others) warned Volt Typhoon had lurked on the networks of critical US infrastructure firms for years thanks to living off the land (LOTL) and using stolen accounts.

"In fact, the U.S. authoring agencies have recently observed indications of Volt Typhoon actors maintaining access and footholds within some victim IT environments for at least five years," the statement said.

At the same time, the Chinese government denied all allegations, and at one point even said the group was a CIA asset. In October 2024, the country published a new paper claiming Volt Typhoon was a US asset, basing its conclusions on, “more than 50 cybersecurity experts” who weren’t named.

Headquartered in Singapore, Singtel is considered one of Asia’s biggest telecommunications providers. It offers a broad range of services, including mobile, broadband, and fixed-line services, not just in Singapore, but across the Asia-Pacific region.

Via The Register

You might also like

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Flag of the People's Republic of China overlaid with a technological network of wires and circuits.
Salt Typhoon attacks may have hit more US firms than previously thought
China
Salt Typhoon hackers used this clever technique to attack US networks
An American flag flying outside the US Capitol building against a blue sky
Chinese cybersecurity firm sanctioned by US Treasury over alleged links to Salt Typhoon hackers
China
Salt Typhoon strikes again - more US ISPs, universities and telecoms networks hit by Chinese hackers
China
AT&T and Verizon say they're free of Salt Typhoon hacks at last, as further victims identified
China US flags cropped
Guam's critical infrastructure is under attack - and Volt Typhoon is the top suspect
Latest in Security
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Lock on Laptop Screen
Medusa ransomware is able to disable anti-malware tools, so be on your guard
An abstract image of digital security.
Fake file converters are stealing info, pushing ransomware, FBI warns
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Coinbase targeted after recent Github attacks
hacker.jpeg
Key trusted Microsoft platform exploited to enable malware, experts warn
IBM office logo
IBM to provide platform for flagship cyber skills programme for girls
Latest in News
Disney Plus logo with popcorn
You can finally tell Disney+ to stop bugging you about that terrible Marvel show you regret starting
Girl wearing Meta Quest 3 headset interacting with a jungle playset
Latest Meta Quest 3 software beta teases a major design overhaul and VR screen sharing – and I need these updates now
Philips Hue
Philips Hue might be working on a video doorbell, and according to a new report, we just got our first look at it
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Hatch Restore 3 in Putty
You can finally start your day with The Office theme song, and I couldn't be more excited
Cassian Andor looking nervously over his shoulder in Andor season 2
New Andor season 2 trailer has got Star Wars fans asking the same question – and it includes an ominous call back to Rogue One's official teaser