Close Menu
Firearms Forever
  • Home
  • Hunting
  • Guns
  • Defense
  • Videos
Trending Now

JD Vance Makes Cartel War Plans Clear: DEATH IS COMING

September 12, 2025

Ep. 415: Roadless Today, Jobless Tomorrow with Chris Wood of Trout Unlimited

September 12, 2025

Charlie Kirk Suspect Photo RELEASED, New Details FLOOD IN

September 12, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Firearms Forever
SUBSCRIBE
  • Home
  • Hunting
  • Guns
  • Defense
  • Videos
Firearms Forever
Home»Defense»Salt Typhoon hacks into National Guard systems a ‘serious escalation,’ experts warn
Defense

Salt Typhoon hacks into National Guard systems a ‘serious escalation,’ experts warn

Tim HuntBy Tim HuntJuly 16, 20254 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Salt Typhoon hacks into National Guard systems a ‘serious escalation,’ experts warn

A prolific Chinese hacking unit’s breach into National Guard networks poses a serious threat to Defense Department systems and is a major escalation of the group’s initial breach into core telecom networks first uncovered last year, according to experts.

A Department of Homeland Security memo summarizing Pentagon findings said the group—known publicly as Salt Typhoon—“extensively compromised a U.S. state’s Army National Guard network” between March and December 2024. The state was not named. 

Salt Typhoon also “collected its network configuration and its data traffic with its counterparts’ networks in every other US state and at least four US territories,” says the memo, citing a DOD report. “This data also included these networks’ administrator credentials and network diagrams—which could be used to facilitate follow-on Salt Typhoon hacks of these units.”

The June 11 memo produced by the DHS Office of Intelligence and Analysis was first reported by NBC News, which obtained it through a Freedom of Information Act request filed by the national security transparency nonprofit Property of the People.

Between January and March of last year, Salt Typhoon also “exfiltrated configuration files associated with other U.S. government and critical infrastructure entities, including at least two U.S. state government agencies,” it notes.

It later adds: “In 2024, Salt Typhoon used its access to a US state’s Army National Guard network to exfiltrate administrator credentials, network traffic diagrams, a map of geographic locations throughout the state and [personally identifiable information] of its service members, according to DOD reporting.”

Salt Typhoon breached major telecom carriers in a global, multi-year espionage campaign uncovered last year. Over time, news has trickled out about the scope and scale of the incident, which was first reported last September by The Wall Street Journal.

The hacking unit is part of a broader syndicate of state-backed groups tied to different military and intelligence arms of China’s central government. The “Typhoon” moniker comes from a Microsoft naming convention for Beijing-linked cyber actors.

“Salt Typhoon’s compromise of the U.S. National Guard is a significant event and potentially poses a serious threat to many Department of Defense systems,” said Gary Barlet, a former Air National Guard servicemember and former chief information officer at the U.S. Postal Service.

“Going forward, all U.S. forces must now assume their networks are compromised and will be degraded,” added Barlet, now public sector CTO at cloud computing security firm Illumino.

Despite the intrusion being at just the state level, it indicates that U.S. armed forces are still in the crosshairs of hackers, said Erich Kron, a security awareness advocate at KnowBe4.

“As we’ve seen in several recent conflicts, cyberattacks play a critical role in military actions, often being coordinated with boots-on-the-ground actions as well. This is just another example of the trouble [the Typhoon groups] can cause and danger that they pose.”

Ensar Seker, CISO at threat intelligence firm SOCRadar, said he is concerned about how long Salt Typhoon dwelled in the National Guard systems undetected.

“The revelation that Salt Typhoon maintained access to a U.S. National Guard network for nearly a year is a serious escalation in the cyber domain,” he said. “It raises questions about visibility gaps, segmentation policies and detection capabilities in hybrid federal-state defense networks. It’s another reminder that advanced persistent threat actors like Salt Typhoon are not only targeting federal agencies but also state-level components where the security posture might be more varied.”

In 2022, the National Guard awarded a $15 million contract to AT&T to modernize GuardNet, the internal network that provides Army Guard soldiers with access to the internet and other platforms. AT&T is among several U.S. telecom providers previously breached by Salt Typhoon, though it remains unclear whether any components of GuardNet were used as a vector in the intrusion.

“Salt Typhoon’s success in compromising states’ Army National Guard networks nationwide could undermine local cybersecurity efforts to protect critical infrastructure,” the DHS memo reads. “In some 14 states, Army National Guard units are integrated with state fusion centers responsible for sharing threat information—including cyber threats.” 

Fusion centers are localized intelligence hubs that bring together personnel and information from federal agencies, as well as state and local governments. 

“In at least one state, the local Army National Guard unit directly provides network defense services,” the memo says.



Read the full article here

Share. Facebook Twitter Pinterest LinkedIn Telegram Reddit Email
Previous ArticleFirst Look Steiner H6Xi Riflescopes With RFP Reticle
Next Article 25th ID switching out Howitzers for HIMARS in Hawaii

Related Posts

Ramp Up for Retirement Now – Because Later Never Comes

September 12, 2025

Pentagon preps for end-of-year, zero trust blitz

September 11, 2025

Joint Chiefs vice chairman nominee vows to reform procurement requirements process

September 11, 2025

The D Brief: Political violence in the USA; House’s NDAA; Intel centers may close; Old ICBMs may operate longer; And a bit more.

September 11, 2025

I Broke my Leg!

September 11, 2025

Mossberg 940 SPX Tactical Big Game Hunt

September 11, 2025
Don't Miss

Ep. 415: Roadless Today, Jobless Tomorrow with Chris Wood of Trout Unlimited

By Tim HuntSeptember 12, 2025

00:00:10 Speaker 1: From Meat Eaters World News headquarters in Bozeman, Montana. 00:00:14 Speaker 2:…

Charlie Kirk Suspect Photo RELEASED, New Details FLOOD IN

September 12, 2025

Ep. 365: This Country Life – Small Knife, Big Life

September 12, 2025

UFO Survives DIRECT MISSILE Hit *UNRELEASED FOOTAGE*

September 12, 2025

Subscribe to Updates

Get the latest firearms news and updates directly to your inbox.

  • Home
  • Privacy Policy
  • Terms of use
  • Contact
© 2025 Firearms Forever. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.