Salt Typhoon — APT Profile

Salt Typhoon is a People's Republic of China (PRC) state-backed actor that has been active since at least 2019 and responsible for numerous compromises of network infrastructure at major U.S. telecommunication and internet service providers (ISP).

Also tracked as

Earth Estries, UNC2286, FamousSparrow, GhostEmperor, Opal Neutron

Tools & malware

Recent claimed victims

Vendor research

Read the full analysis on IntelFusions