Suspected Chinese Cyber Espionage Group Targets European Telecom Infrastructure
Security analysts have identified what appears to be a sophisticated cyberespionage operation against a European telecommunications provider. The suspected Chinese-linked Salt Typhoon group exploited Citrix vulnerabilities to deploy backdoors and maintain stealthy network access according to recent findings.
European Telecommunications Provider Targeted in Sophisticated Cyberattack
Security researchers at Darktrace have identified what they assess to be a cyberespionage operation against a European telecommunications firm, with evidence pointing to the China-linked threat actor known as Salt Typhoon. According to their report, the intrusion occurred in early July 2025 and involved the exploitation of vulnerable Citrix NetScaler Gateway appliances to gain initial network access.