Monday , October 5 2026
cable

T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move followed months of investigation into activity linked to Salt Typhoon, the China-associated espionage group accused of infiltrating telecommunications and internet providers worldwide.

The event shows how serious the campaign is and how important it is for defenders to act fast when a skilled attacker gets into important network areas.

Citrix NetScaler SAML 0-Day Flaw Under Attack

Citrix has put out emergency security updates for a NetScaler SAML flaw that hackers are using. Known as CVE-2026-88779, this...
Read More
Citrix NetScaler SAML 0-Day Flaw Under Attack

Major Danish university breached, 200,000 users at risk

Hackers got into the identity and access management system at the Technical University of Denmark (DTU) and downloaded a lot...
Read More
Major Danish university breached, 200,000 users at risk

Microsoft’s X account hijacked to promote Clippy crypto scam

Microsoft's official X account was taken over to promote an unapproved Clippy-themed cryptocurrency. The tech giant’s X account, with 13...
Read More
Microsoft’s X account hijacked to promote Clippy crypto scam

Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

CPanel has put out security updates to fix three problems in cPanel & WHM. These problems could let attackers take...
Read More
Critical cPanel, GitLab AI Gateway and Dell CSM Flaws Enable RCE And Admin Hijacking

Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Nearly 100,000 Bee Cheng Hiang customers had their email addresses leaked when an employee used an AI tool to generate...
Read More
Nearly 100,000 email addresses exposed in first AI-related data breach in Singapore

Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Hackers to exploit a flaw in Zimbra mail servers that are connected to the Internet. They send special emails that...
Read More
Hackers Exploit Zimbra Mail Servers: TeamViewer patched 5 critical flaws

Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

Google has said that hackers are using two serious Citrix NetScaler security holes to get root access, set up hidden...
Read More
Google Warns of Hackers Actively Exploiting Citrix 0-Day Flaws

CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is alerting people about a major flaw in MikroTik RouterOS. This could...
Read More
CISA Warns Critical MikroTik RouterOS Flaw While Cisco SD-WAN Zero-Day Exploited in Attacks

Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

Apple has launched iOS 26.7.1 and iPadOS 26.7.1 to fix a serious zero-day flaw that it believes might have been...
Read More
Apple Zero-Day Exploited: Pentagon Data Breach Reportedly Exposes Sensitive Data of 3 Million People

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal passwords, and damage key components. The...
Read More
JadePuffer Agentic AI targets and destroys Azure’s cloud resources

T-Mobile Cuts Network Cable to Kick Salt Typhoon Hackers

Analysts found strange activity on a system that seemed to come from a router used by another, unnamed telecom company. The discovery suggested a possible route into T-Mobile’s network via linked carrier systems.

Jeff Simon, T-Mobile’s chief security officer, and three colleagues reportedly traveled to a data center near the company’s Bellevue, Washington headquarters to locate the affected equipment.

Rather than relying solely on remote remediation or waiting for a more conventional containment process, the team used scissors to sever the physical cable connecting the suspected compromised hardware to the external network.

The action quickly separated the device and stopped the attackers from getting in. Bloomberg said the cable was later put in a frame and shown at T-Mobile’s headquarters to remind everyone of the event.

The episode shows how hard defenders had to work against an opponent that could shift between linked network systems. Salt Typhoon’s skill to move within shared systems, taking advantage of trusts between telecom routers, has made this campaign one of the most important state-backed attacks in U.S. telecom history.

FBI officials say the threat is still happening, and the high number of known victims shows that the group still has access to parts of global telecom systems, even though companies like T-Mobile are trying to shut them out.

A security team chose scissors over a software fix to stop a hacker. This shows that sometimes the quickest way to deal with a nation-state hacker is to disconnect them.

Salt Typhoon targeted telecom companies and network systems worldwide. U.S. Officials have reported that the group’s work centered on gathering private communication information, like call logs and data related to important government leaders and politicians.

The campaign reportedly impacted big telecom companies like AT&T, Verizon, Lumen, Charter Communications, and Windstream.

Related News:

China’s Salt Typhoon of espionage attacks: Norwegian intelligence discloses
T-Mobile Says Personal Information Stolen in New Data Breach

Check Also

JadePuffer

JadePuffer Agentic AI targets and destroys Azure’s cloud resources

The JadePuffer ransomware group is attacking Azure users with agent-based attacks that gather information, steal …