Skip to main content

Hackers conduct prolonged cyberattack against phone network, says security firm

A security company has reported on a prolonged cyberattack against global phone networks, where hackers have apparently collected data related to phone conversations — from call duration to the identity of the parties and even the physical location of the device. A report from Cybereason, an international cyber-security company with its headquarters in Boston, says it has worked with one telecoms provider to combat five waves of attacks that have taken place since 2018, and went on to discuss these attacks with more than 12 other networks.

Cybereason detailed how the attacks took place. Apparently targeting Call Detail Records, or CDRs, the attackers turned to a familiar system to gain entry to private networks — malware activated through opening infected files sent by email. Once access had been acquired, the security firm believes the target was to obtain the CDRs. The company claims it saw the attack, then worked to stop a further four attacks over the next few months, where each time the tools had been reworked, and applied using different techniques.

The networks targeted have not been named, but apparently the CDR data collected was related to users in Asia, the Middle East, and in Europe. Cybereason says the attacks were persistent and advanced, and attempts were made to steal usernames, passwords, call records, billing information, geo-location data, and more. The security company said this was, “a complete takeover of the network.”

While it does not name the networks, or go into detail about how much (if any) information was stolen, state if there is any danger to subscribers, or mention if the network in question has a need to inform affected users, it does not waste time identifying what it believes is the source of the attacks. Cybereason says the tools and methods used suggest it’s the work of APT10, a hacking group apparently linked to the Chinese Ministry of State Security.

APT10 has been in the news before. At the end of 2018 it was identified as being behind cyberattacks against Managed Service Providers in the U.K., a simultaneous attack in Japan, and elsewhere around the world, which became known as Operation Cloud Hopper. At the time, investigators at PwC said the large scale operation was, “only likely to reflect a small portion of APT10’s global operations.” It’s entirely possible the latest attack, named Operation Soft Cell by Cybereason, is also only one aspect of APT10’s current operations. It has also been blamed for recent cyber espionage activity in the Philippines. The Chinese Foreign Ministry responded when at the end of 2018, the U.S. indicted two Chinese citizens that were allegedly members of APT10, stating it does not support, nor participate in, the stealing of commercial secrets.

What is the likelihood you have been the accidental target in these attacks? Cybereason says it does not believe U.S. subscribers or networks have been affected. Additionally, it does not link the attacks with the ongoing accusations against Huawei, or any alleged security threat from the company. Finally, it’s worth understanding that Cybereason is a cyber-security company, and sells a platform designed to, “tell companies if they are under attack, the attack’s impact, and how to immediately stop the threat.” While there is no reason to doubt Cybereason’s report and findings, it will be keen to promote its services to other companies in this time of heightened fear over network security.

Andy Boxall
Andy is a Senior Writer at Digital Trends, where he concentrates on mobile technology, a subject he has written about for…
AT&T just made it a lot easier to upgrade your phone
AT&T Storefront with logo.

Do you want to upgrade your phone more than once a year? What about three times a year? Are you on AT&T? If you answered yes to those questions, then AT&T’s new “Next Up Anytime” early upgrade program is made for you. With this add-on, you’ll be able to upgrade your phone three times a year for just $10 extra every month. It will be available starting July 16.

Currently, AT&T has its “Next Up” add-on, which has been available for the past several years. This program costs $6 extra per month and lets you upgrade by trading in your existing phone after at least half of it is paid off. But the new Next Up Anytime option gives you some more flexibility.

Read more
Motorola is selling unlocked smartphones for just $150 today
Someone holding the Moto G Stylus 5G (2024).

Have you been looking for phone deals but don’t want to spend a ton of money on flagship devices from Apple and Samsung? Have you ever considered investing in an unlocked Motorola? For a limited time, the company is offering a $100 markdown on the Motorola Moto G 5G. It can be yours for just $150, and your days and nights of phone-shopping will finally be over!

Why you should buy the Motorola Moto G 5G
Powered by the Snapdragon 480+ 5G CPU and 4GB of RAM, the Moto G delivers exceptional performance across the board. From UI navigation to apps, games, and camera functions, you can expect fast load times, next to no buffering, and smooth animations. You’ll also get up to 128GB of internal storage that you’ll be able to use for photos, videos, music, and any other mobile content you can store locally. 

Read more
The Nokia 3210 is the worst phone I’ve used in 2024
A person holding the Nokia 3210, showing the screen.

Where do I even start with the Nokia 3210? Not the original, which was one of the coolest phones to own back in a time when Star Wars: Episode 1 -- The Phantom Menace wasn’t even a thing, but the latest 2024 reissue that has come along to save us all from digital overload, the horror of social media, and the endless distraction that is the modern smartphone.

Except behind this facade of marketing-friendly do-goodery hides a weapon of torture, a device so foul that I’d rather sit through multiple showings of Jar Jar Binks and the gang hopelessly trying to bring back the magic of A New Hope than use it.
The Nokia 3210 really is that bad

Read more