{"id":7319,"date":"2025-02-13T13:10:35","date_gmt":"2025-02-13T19:10:35","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=83492"},"modified":"2025-02-13T13:10:35","modified_gmt":"2025-02-13T19:10:35","slug":"salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2025\/02\/13\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers\/","title":{"rendered":"Salt Typhoon remains active, hits more telecom networks via Cisco routers"},"content":{"rendered":"<p><head> <meta charset=\"UTF-8\"> <meta name=\"viewport\" content=\"width=device-width, initial-scale=1\"> <meta name=\"robots\" content=\"index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1\"> <!-- This site is optimized with the Yoast SEO Premium plugin v21.7 (Yoast SEO v21.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ --> <title>Salt Typhoon remains active, hits more telecom networks via Cisco routers | CyberScoop<\/title> <meta name=\"description\" content=\"The Chinese nation-state threat group intruded five additional telecom networks between December and January, including two unnamed providers in the U.S., Recorded Future researchers said.\"> <link rel=\"canonical\" href=\"https:\/\/cyberscoop.com\/salt-typhoon-china-ongoing-telecom-attack-spree\/\"> <meta property=\"og:locale\" content=\"en_US\"> <meta property=\"og:type\" content=\"article\"> <meta property=\"og:title\" content=\"Salt Typhoon remains active, hits more telecom networks via Cisco routers\"> <meta property=\"og:description\" content=\"The Chinese nation-state threat group intruded five additional telecom networks between December and January, including two unnamed providers in the U.S., Recorded Future researchers said.\"> <meta property=\"og:url\" content=\"https:\/\/cyberscoop.com\/salt-typhoon-china-ongoing-telecom-attack-spree\/\"> <meta property=\"og:site_name\" content=\"CyberScoop\"> <meta property=\"article:published_time\" content=\"2025-02-13T19:10:35+00:00\"> <meta property=\"article:modified_time\" content=\"2025-02-13T19:10:38+00:00\"> <meta property=\"og:image\" content=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg\"> <meta property=\"og:image:width\" content=\"2121\"> <meta property=\"og:image:height\" content=\"1414\"> <meta property=\"og:image:type\" content=\"image\/jpeg\"> <meta name=\"author\" content=\"Matt Kapko\"> <meta name=\"twitter:card\" content=\"summary_large_image\"> <!-- \/ Yoast SEO Premium plugin. --> <link rel=\"dns-prefetch\" href=\"\/\/securepubads.g.doubleclick.net\">\n<link rel=\"dns-prefetch\" href=\"\/\/use.typekit.net\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Feed\" href=\"https:\/\/cyberscoop.com\/feed\/\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Comments Feed\" href=\"https:\/\/cyberscoop.com\/comments\/feed\/\"> <link rel=\"stylesheet\" id=\"all-css-2\" href=\"https:\/\/cyberscoop.com\/wp-includes\/css\/dist\/block-library\/style.min.css?m=1739294329g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-6\" href=\"https:\/\/cyberscoop.com\/wp-content\/mu-plugins\/search\/elasticpress\/dist\/css\/related-posts-block-styles.min.css?m=1736472017g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-8\" href=\"https:\/\/cyberscoop.com\/wp-content\/themes\/scoopnewsgroup\/dist\/css\/frontend.css?m=1739308213g\" type=\"text\/css\" media=\"all\">\n<link rel=\"stylesheet\" id=\"typekit-css\" href=\"https:\/\/use.typekit.net\/itk2qbh.css?ver=5e4722b3d0055288d011\" media=\"all\"> <link rel=\"https:\/\/api.w.org\/\" href=\"https:\/\/cyberscoop.com\/wp-json\/\"><link rel=\"alternate\" title=\"JSON\" type=\"application\/json\" href=\"https:\/\/cyberscoop.com\/wp-json\/wp\/v2\/posts\/83492\"><link rel=\"EditURI\" type=\"application\/rsd+xml\" title=\"RSD\" href=\"https:\/\/cyberscoop.com\/xmlrpc.php?rsd\">\n<meta name=\"generator\" content=\"WordPress 6.7.2\">\n<link rel=\"shortlink\" href=\"https:\/\/cyberscoop.com\/?p=83492\">\n<link rel=\"alternate\" title=\"oEmbed (JSON)\" type=\"application\/json+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fsalt-typhoon-china-ongoing-telecom-attack-spree%2F\">\n<link rel=\"alternate\" title=\"oEmbed (XML)\" type=\"text\/xml+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fsalt-typhoon-china-ongoing-telecom-attack-spree%2F&amp;format=xml\"> <!-- Google Tag Manager --> <!-- End Google Tag Manager --> <link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=32\" sizes=\"32x32\">\n<link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=192\" sizes=\"192x192\">\n<link rel=\"apple-touch-icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=180\">\n<meta name=\"msapplication-TileImage\" content=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=270\"> <\/head><body class=\"post-template-default single single-post postid-83492 single-format-standard\" id=\"readabilityBody\"> <a href=\"https:\/\/cyberscoop.com\/salt-typhoon-china-ongoing-telecom-attack-spree\/#main\" class=\"skip-to-content-link visually-hidden-focusable\">Skip to main content<\/a> <\/p>\n<div class=\"ad ad--top ad--top-desktop\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p> <main id=\"main\" role=\"main\" tabindex=\"-1\"> <\/p>\n<div class=\"ad ad--top ad--top-mobile\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<section id=\"stickybar\" class=\"stickybar stickybar--event js-stickybar\">\n<div class=\"stickybar__details\" readability=\"5.12\">\n<div class=\"stickybar__info js-sticky-bar-content\" readability=\"32\">\n<p>Nominations can be submitted for the 2025 CyberScoop 50 awards!<\/p>\n<\/div>\n<p> <a class=\"stickybar__link button button-tertiary\" href=\"https:\/\/cyberscoop.com\/cyberscoop50\/\">Click here!<\/a> <\/div>\n<p> <button class=\"stickybar__close js-stickybar-close\" aria-controls=\"stickybar\"> <svg class=\"icon icon--close\" width=\"21\" height=\"22\" viewBox=\"0 0 21 22\" fill=\"none\"><path d=\"m.822.518-.805.805L9.695 11 .017 20.678l.805.805 9.678-9.678 9.677 9.678.806-.805L11.305 11l9.678-9.677-.806-.805-9.677 9.677L.822.518Z\" fill=\"currentColor\" \/><\/svg> <span class=\"visually-hidden\">Close<\/span> <\/button> <\/section>\n<article class=\"single-article content\">\n<div class=\"single-article__container js-single-article-content\">\n<header class=\"single-article__header \" readability=\"26.616071428571\">\n<div class=\"single-article__header-content\" readability=\"36.503282275711\">\n<p> The Chinese nation-state threat group intruded five additional telecom networks between December and January, including two unnamed providers in the U.S., Recorded Future researchers said. <\/p>\n<p> <!-- Listen to this article section --> <!-- Audio Element --><br \/>\n<audio id=\"audio-player\" src=\"https:\/\/wp-tts-cdn.api.scpnewsgrp.com\/cyberscoop\/83492\/english.openai.mp3\"><\/audio> <\/p>\n<div readability=\"11\">\n<div>\n<p>Listen to this article<\/p>\n<p> <!-- Countdown Timer --> <\/p>\n<p>0:00<\/p>\n<\/p><\/div>\n<p> <!-- Tooltip --> <\/p>\n<p> <span id=\"tts-tooltip\">Learn more.<\/span> <span> This feature uses an automated voice, which may result in occasional errors in pronunciation, tone, or sentiment. <\/span> <\/p>\n<\/div>\n<p> <!-- End of audio player --> <\/div>\n<div class=\"single-article__cover-wrap\">\n<figure class=\"single-article__cover\"> <img data-recalc-dims=\"1\" fetchpriority=\"high\" width=\"640\" height=\"426\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers.jpg?resize=640%2C426&#038;ssl=1\" class=\"single-article__cover-image wp-post-image\" alt decoding=\"async\" fetchpriority=\"high\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg 2121w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=2048,1365 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=506,337 506w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=1013,675 1013w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-2.jpg?resize=1265,843 1265w\" sizes=\"(max-width: 1013px) 100vw, 1013px\"><figcaption> For suspected Chinese hackers, U.S. telecoms represent a tempting target for espionage. (Getty Images) <\/figcaption><\/figure>\n<\/p><\/div>\n<\/header>\n<div class=\"single-article__content\">\n<div class=\"single-article__content-inner has-drop-cap\"> <html readability=\"47.257745427398\"><body readability=\"96.322720694645\"><\/p>\n<p>Salt Typhoon, the Chinese nation-state threat group linked to a spree of attacks on U.S. and global telecom providers, remains active in its intrusion and has hit&nbsp;multiple additional networks worldwide, including two in the United States, Recorded Future said in a <a href=\"https:\/\/go.recordedfuture.com\/hubfs\/reports\/cta-cn-2025-0213.pdf\">report<\/a> released Thursday.<\/p>\n<p>Recorded Future\u2019s Insikt Group observed seven compromised Cisco network devices communicating with Salt Typhoon infrastructure on five telecom networks between early December and late January. The compromised companies include an unnamed U.S. internet service provider and telecom company, a U.S.-based affiliate of a U.K. telecom provider, a large telecom provider in Thailand, an Italy-based ISP and a South Africa-based telecom provider.<\/p>\n<p>Salt Typhoon\u2019s ongoing attack spree underscores the enduring challenge global cyber authorities and network defenders confront in trying to thwart the nation-state group\u2019s activities. U.S. and White House officials in December warned they <a href=\"https:\/\/cyberscoop.com\/salt-typhoon-national-security-council-chinese-spying\/\">may never know<\/a> if the group has been completely booted from networks.&nbsp;<\/p>\n<p>Attackers primarily targeted internet-exposed Cisco network routers over the past couple months, according to Recorded Future. Tracked as RedMike by the company, the group has attempted to exploit more than 1,000 Cisco routers worldwide \u2014 focusing mainly on those running in telecom networks \u2014 since early December.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>The threat group exploited a pair of known privilege escalation vulnerabilities in Cisco IOS XE, the vendor\u2019s operating system for networking devices, Recorded Future said in the report.&nbsp;<\/p>\n<p>Vulnerabilities in network devices are a common intrusion point for cyberattacks.<\/p>\n<p>The pair of CVEs impacting Cisco IOS XE \u2014 <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2023-20198\">CVE-2023-20198<\/a> and <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2023-20273\">CVE-2023-20273<\/a> \u2014 were the third and fourth <a href=\"https:\/\/www.cisa.gov\/sites\/default\/files\/2024-11\/aa24-317a-2023-top-routinely-exploited-vulnerabilities.pdf\">most routinely-exploited vulnerabilities<\/a> in 2023, according to a Five Eyes cyber advisory released in November.&nbsp;<\/p>\n<p>In the attacks monitored by Recorded Future, Salt Typhoon chained multiple vulnerabilities together. First, it exploited&nbsp; CVE-2023-20198, a vulnerability with a 10 score on the CVSS scale, in order to create a local user and password on the targeted device. Using this new account, it then accessed the device and exploited CVE-2023-20273 to gain root user privileges.<\/p>\n<p>\u201cWe have not observed other initial access vectors related to this campaign at this time,\u201d Jon Condra, senior director of strategic intelligence at Recorded Future, said in an email. \u201cWe also have no indication that the previously publicized intrusions against AT&amp;T, Verizon, etc. linked to Salt Typhoon were linked to these specific vulnerabilities or Cisco devices more broadly.\u201d<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Authorities haven\u2019t identified the primary initial access point for Salt Typhoon\u2019s attacks, but <a href=\"https:\/\/www.cisa.gov\/resources-tools\/resources\/enhanced-visibility-and-hardening-guidance-communications-infrastructure\">hardening guidance<\/a> released by U.S. and global officials in December specifically called out the need for network defenders to address the risk of Cisco device exploitation. Officials didn\u2019t mention specific vulnerabilities in the guidance, but advised organizations to refer to Cisco\u2019s hardening guides for NX-OS software devices and IOS-XE.<\/p>\n<p>\u201cIn 2023, Cisco published a <a href=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-iosxe-webui-privesc-j22SaA4z\">security advisory<\/a> disclosing multiple vulnerabilities in the web UI feature in Cisco IOS XE software,\u201d a Cisco spokesperson said via email. \u201cWe continue to strongly urge customers to follow recommendations outlined in the advisory and upgrade to the available fixed software release.\u201d<\/p>\n<p>The majority of the Cisco devices targeted by Salt Typhoon since early December were used by telecom providers based in the U.S., South America and India, but other targeted devices were spread across more than 100 countries, according to Recorded Future. Researchers also observed Salt Typhoon attempting to exploit Cisco devices used by universities in nine countries, including four in the U.S., potentially targeting research related to telecom, engineering and technology.<\/p>\n<p>Salt Typhoon\u2019s attack spree targeting global telecom networks began up to two years before it was discovered by U.S. officials in late spring of last year. The Chinese nation-state threat group gained broad and full access to U.S. telecom networks, stole metadata, geolocated millions of individuals at will and directly targeted and stole communications of about 100 individuals involved in government or political activities.<\/p>\n<p>Salt Typhoon is one of three known and active threat groups affiliated with China\u2019s government. U.S. authorities have been warning about Chinese hacking efforts targeting critical infrastructure with increasing alarm since early 2024.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Recorded Future\u2019s research on the group\u2019s ongoing activities follows a series of <a href=\"https:\/\/cyberscoop.com\/treasury-sanctions-chinese-cybersecurity-company-salt-typhoon-hacks\/\">sanctions placed on China-based organizations and individuals<\/a> for their alleged involvement in the telecom network attacks and a <a href=\"https:\/\/cyberscoop.com\/treasury-workstations-hacked-china-beyondtrust-identity-access-management\/\">December hack of the Treasury Department<\/a>.<\/p>\n<p><\/body> <\/p>\n<footer class=\"single-article__footer\" readability=\"3.4615384615385\">\n<div class=\"author-card\" readability=\"14\">\n<div class=\"author-card__avatar\">\n<figure class=\"author-card__image-wrap\"> <img data-recalc-dims=\"1\" decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/02\/salt-typhoon-remains-active-hits-more-telecom-networks-via-cisco-routers-1.jpg?w=640&#038;ssl=1\" alt=\"Matt Kapko\"> <\/figure>\n<\/p><\/div>\n<p><h4 class=\"author-card__name\">Written by Matt Kapko<\/h4>\n<p> Matt Kapko is a reporter at CyberScoop. His beat includes cybercrime, ransomware, software defects and vulnerability (mis)management. The lifelong Californian started his journalism career in 2001 with previous stops at Cybersecurity Dive, CIO, SDxCentral and RCR Wireless News. Matt has a degree in journalism and history from Humboldt State University. <\/p>\n<\/p><\/div>\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <\/html><\/div>\n<\/p><\/div>\n<\/p><\/div>\n<div class=\"single-article__ads js-single-article-sidebar\">\n<div class=\"ad ad--sidebar js-single-article-sidebar-5 ad--rightrail_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-4 ad--rightrail_2 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-3 ad--rightrail_3 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div><\/div>\n<\/article>\n<div class=\"popular-stories popular-stories--single-post\">\n<div class=\"popular-stories__container\">\n<h2 class=\"popular-stories__title\"> More Scoops <\/h2>\n<p> <!-- .popular-stories__stories --> <\/div>\n<p><!-- .popular-stories__inner -->\n<\/div>\n<p><!-- .popular-stories --> <\/p>\n<section class=\"latest-podcasts\">\n<h2 class=\"latest-podcasts__title\"> Latest Podcasts\t<\/h2>\n<\/section>\n<div class=\"top-categories\">\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Government<\/h3>\n<\/p><\/div>\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Technology<\/h3>\n<\/p><\/div>\n<\/p><\/div>\n<p> <\/main> <\/p>\n<div class=\"ad ad--bottom \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div id=\"interstitial\" class=\"welcome__container\"> <button id=\"close-modal-1\" class=\"welcome__clickable_area\"><\/button> <\/p>\n<div class=\"welcome__ad_wrapper\">\n<p> <button id=\"close-modal-3\" class=\"welcome__continue-button\">Continue to CyberScoop<\/button> <\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p> <!-- Start of HubSpot Embed Code --> <!-- End of HubSpot Embed Code --> <\/body> <a href=\"https:\/\/cyberscoop.com\/salt-typhoon-china-ongoing-telecom-attack-spree\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Salt Typhoon remains active, hits more telecom networks via Cisco<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[271,1764,1084,78,1573,3707,3332,2015,256,2815,2953,288,643],"tags":[277,1769,1087,86,1575,3708,3336,2017,262,2822,2956,294,645],"class_list":["post-7319","post","type-post","status-publish","format-standard","hentry","category-china","category-cisco","category-cisco-ios-xe","category-cybersecurity","category-five-eyes","category-nation-state-threats","category-nation-state-hackers","category-recorded-future","category-research","category-routers","category-salt-typhoon","category-threats","category-vulnerabilities","tag-china","tag-cisco","tag-cisco-ios-xe","tag-cybersecurity","tag-five-eyes","tag-nation-state-threats","tag-nation-state-hackers","tag-recorded-future","tag-research","tag-routers","tag-salt-typhoon","tag-threats","tag-vulnerabilities"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/china\/\" rel=\"category tag\">China<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cisco\/\" rel=\"category tag\">Cisco<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cisco-ios-xe\/\" rel=\"category tag\">Cisco IOS XE<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity\/\" rel=\"category tag\">Cybersecurity<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/five-eyes\/\" rel=\"category tag\">Five Eyes<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/nation-state-threats\/\" rel=\"category tag\">nation state threats<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/nation-state-hackers\/\" rel=\"category tag\">nation-state hackers<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/recorded-future\/\" rel=\"category tag\">Recorded Future<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/research\/\" rel=\"category tag\">Research<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/routers\/\" rel=\"category tag\">routers<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/salt-typhoon\/\" rel=\"category tag\">Salt Typhoon<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/threats\/\" rel=\"category tag\">Threats<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/vulnerabilities\/\" rel=\"category tag\">vulnerabilities<\/a>","tag_info":"vulnerabilities","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/7319","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=7319"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/7319\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=7319"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=7319"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=7319"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}