{"id":21595,"date":"2025-02-21T08:31:16","date_gmt":"2025-02-21T08:31:16","guid":{"rendered":"https:\/\/vacif.com\/?p=21595"},"modified":"2025-03-24T07:27:07","modified_gmt":"2025-03-24T07:27:07","slug":"canh-bao-cong-hoa-nhan-dan-trung-hoa-prc-xam-pham-he-thong-vien-thong-toan-cau-thong-qua-lo-hong-bao-mat-tren-router-cisco","status":"publish","type":"post","link":"https:\/\/vacif.com\/en\/canh-bao-cong-hoa-nhan-dan-trung-hoa-prc-xam-pham-he-thong-vien-thong-toan-cau-thong-qua-lo-hong-bao-mat-tren-router-cisco\/","title":{"rendered":"C\u1ea2NH B\u00c1O B\u1ea2O M\u1eacT: L\u1ed6 H\u1ed4NG TR\u00caN ROUTER CISCO B\u1eca KHAI TH\u00c1C B\u1edeI NH\u00d3M TIN T\u1eb6C TRUNG QU\u1ed0C, \u0110E D\u1eccA H\u1ec6 TH\u1ed0NG VI\u1ec4N TH\u00d4NG TO\u00c0N C\u1ea6U"},"content":{"rendered":"\n<p><em>By The Cyber Security Hub\u2122<\/em><\/p>\n\n\n\n<p>Nh\u00f3m APT (Advanced Persistent Threat) Salt Typhoon ti\u1ebfp t\u1ee5c li\u00ean h\u1ec7 v\u1edbi Trung Qu\u1ed1c v\u1ec1 vi\u1ec7c t\u1ea5n c\u00f4ng v\u00e0o c\u00e1c nh\u00e0 cung c\u1ea5p d\u1ecbch v\u1ee5 vi\u1ec5n th\u00f4ng tr\u00ean to\u00e0n c\u1ea7u. Theo b\u00e1o c\u00e1o c\u1ee7a <a href=\"https:\/\/go.recordedfuture.com\/hubfs\/reports\/cta-cn-2025-0213.pdf\"><strong>Insikt Group thu\u1ed9c Recorded Future<\/strong><\/a>, c\u00e1c t\u00e1c nh\u00e2n \u0111e d\u1ecda n\u00e0y \u0111\u00e3 x\u00e2m nh\u1eadp v\u00e0o h\u1ec7 th\u1ed1ng c\u1ee7a m\u1ed9t s\u1ed1 nh\u00e0 cung c\u1ea5p vi\u1ec5n th\u00f4ng t\u1ea1i M\u1ef9 b\u1eb1ng c\u00e1ch khai th\u00e1c c\u00e1c thi\u1ebft b\u1ecb m\u1ea1ng Cisco IOS XE ch\u01b0a \u0111\u01b0\u1ee3c v\u00e1 l\u1ed7i.<\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-cd1a6a0c838abb10a08389083b8ec61a\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\">Khai th\u00e1c l\u1ed7 h\u1ed5ng b\u1ea3o m\u1eadt tr\u00ean thi\u1ebft b\u1ecb Cisco<\/p>\n\n\n\n<p>C\u00e1c nh\u00e0 nghi\u00ean c\u1ee9u c\u1ee7a Insikt Group ph\u00e1t hi\u1ec7n r\u1eb1ng tin t\u1eb7c Trung Qu\u1ed1c \u0111\u00e3 l\u1ee3i d\u1ee5ng hai l\u1ed7 h\u1ed5ng b\u1ea3o m\u1eadt nghi\u00eam tr\u1ecdng tr\u00ean Cisco:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2023-20198\">CVE-2023-20198<\/a><\/strong><\/li>\n\n\n\n<li><strong><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2023-20273\">CVE-2023-20273<\/a><\/strong><\/li>\n<\/ul>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Chi ti\u1ebft v\u1ec1 CVE-2023-20198<\/strong><\/p>\n\n\n\n<p>V\u00e0o th\u00e1ng 10 n\u0103m 2023, Cisco c\u00f4ng b\u1ed1 l\u1ed7 h\u1ed5ng zero-day <a href=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-iosxe-webui-privesc-j22SaA4z\"><strong>CVE-2023-20198<\/strong><\/a> v\u1edbi \u0111i\u1ec3m CVSS t\u1ed1i \u0111a l\u00e0 <strong>10<\/strong>. L\u1ed7 h\u1ed5ng n\u00e0y \u0111\u01b0\u1ee3c t\u00ecm th\u1ea5y trong ph\u1ea7n m\u1ec1m IOS XE v\u00e0 \u0111\u00e3 b\u1ecb khai th\u00e1c trong c\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng th\u1ef1c t\u1ebf. Cisco ph\u00e1t hi\u1ec7n ra l\u1ed7 h\u1ed5ng n\u00e0y khi x\u1eed l\u00fd nhi\u1ec1u tr\u01b0\u1eddng h\u1ee3p h\u1ed7 tr\u1ee3 k\u1ef9 thu\u1eadt (TAC).<\/p>\n\n\n\n<p>K\u1ebb t\u1ea5n c\u00f4ng c\u00f3 th\u1ec3 khai th\u00e1c l\u1ed7 h\u1ed5ng n\u00e0y \u0111\u1ec3 chi\u1ebfm quy\u1ec1n qu\u1ea3n tr\u1ecb v\u00e0 ki\u1ec3m so\u00e1t ho\u00e0n to\u00e0n router b\u1ecb \u1ea3nh h\u01b0\u1edfng. Th\u00f4ng b\u00e1o c\u1ea3nh b\u00e1o t\u1eeb Cisco cho bi\u1ebft l\u1ed7 h\u1ed5ng n\u00e0y cho ph\u00e9p m\u1ed9t k\u1ebb t\u1ea5n c\u00f4ng t\u1eeb xa, kh\u00f4ng c\u1ea7n x\u00e1c th\u1ef1c, c\u00f3 th\u1ec3 t\u1ea1o t\u00e0i kho\u1ea3n c\u00f3 quy\u1ec1n <strong>privilege level 15<\/strong> tr\u00ean h\u1ec7 th\u1ed1ng b\u1ecb \u1ea3nh h\u01b0\u1edfng.<\/p>\n\n\n\n<p>L\u1ed7 h\u1ed5ng \u1ea3nh h\u01b0\u1edfng \u0111\u1ebfn c\u1ea3 thi\u1ebft b\u1ecb v\u1eadt l\u00fd v\u00e0 \u1ea3o n\u1ebfu t\u00ednh n\u0103ng <strong>Web User Interface (Web UI)<\/strong> \u0111\u01b0\u1ee3c k\u00edch ho\u1ea1t c\u00f9ng v\u1edbi <strong>HTTP\/HTTPS Server<\/strong>.<\/p>\n\n\n\n<p class=\"has-medium-font-size\"><strong>Chi ti\u1ebft v\u1ec1 CVE-2023-20273<\/strong><\/p>\n\n\n\n<p>C\u0169ng v\u00e0o th\u00e1ng 10 n\u0103m 2023, C\u01a1 quan An ninh m\u1ea1ng v\u00e0 C\u01a1 s\u1edf h\u1ea1 t\u1ea7ng Hoa K\u1ef3 (CISA) \u0111\u00e3 th\u00eam CVE-2023-20273 v\u00e0o danh m\u1ee5c <strong>l<a href=\"https:\/\/www.cisa.gov\/known-exploited-vulnerabilities-catalog\">\u1ed7 h\u1ed5ng b\u1ecb khai th\u00e1c \u0111\u00e3 bi\u1ebft<\/a><\/strong> (<em>Known Exploited Vulnerabilities<\/em>).<\/p>\n\n\n\n<p>L\u1ed7 h\u1ed5ng n\u00e0y li\u00ean quan \u0111\u1ebfn m\u1ed9t l\u1ed7i kh\u00f4ng x\u00e1c \u0111\u1ecbnh trong giao di\u1ec7n qu\u1ea3n tr\u1ecb web c\u1ee7a Cisco. K\u1ebb t\u1ea5n c\u00f4ng c\u00f3 th\u1ec3 k\u1ebft h\u1ee3p l\u1ed7 h\u1ed5ng n\u00e0y v\u1edbi <strong>CVE-2023-20198<\/strong> \u0111\u1ec3 n\u00e2ng cao \u0111\u1eb7c quy\u1ec1n l\u00ean c\u1ea5p <strong>root<\/strong>, t\u1eeb \u0111\u00f3 c\u00e0i c\u1ea5y m\u00e3 \u0111\u1ed9c (implant) v\u00e0o h\u1ec7 th\u1ed1ng t\u1ec7p c\u1ee7a thi\u1ebft b\u1ecb.<\/p>\n\n\n\n<p>Trong qu\u00e1 tr\u00ecnh \u0111i\u1ec1u tra, Cisco ph\u00e1t hi\u1ec7n r\u1eb1ng ngay c\u1ea3 nh\u1eefng h\u1ec7 th\u1ed1ng \u0111\u00e3 \u0111\u01b0\u1ee3c v\u00e1 l\u1ed7i ch\u1ed1ng l\u1ea1i <strong>CVE-2023-20198<\/strong> v\u1eabn b\u1ecb t\u1ea5n c\u00f4ng, cho th\u1ea5y c\u00f3 th\u1ec3 t\u1ed3n t\u1ea1i m\u1ed9t l\u1ed7 h\u1ed5ng zero-day kh\u00e1c ch\u01b0a \u0111\u01b0\u1ee3c c\u00f4ng b\u1ed1.<\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-21a1964cab75f93212e0a3ec651c51f2\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>T\u00e1c \u0111\u1ed9ng to\u00e0n c\u1ea7u \u0111\u1ed1i v\u1edbi c\u00e1c m\u1ea1ng vi\u1ec5n th\u00f4ng<\/strong><\/p>\n\n\n\n<p>B\u00e1o c\u00e1o c\u1ee7a Insikt Group cho th\u1ea5y c\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng \u0111\u00e3 x\u00e2m nh\u1eadp v\u00e0o nhi\u1ec1u m\u1ea1ng vi\u1ec5n th\u00f4ng, bao g\u1ed3m:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>C\u00e1c nh\u00e0 cung c\u1ea5p d\u1ecbch v\u1ee5 Internet (ISP) t\u1ea1i <strong>M\u1ef9<\/strong> v\u00e0 <strong>\u00dd<\/strong><\/li>\n\n\n\n<li>M\u1ed9t nh\u00e0 m\u1ea1ng t\u1ea1i M\u1ef9 c\u00f3 li\u00ean k\u1ebft v\u1edbi <strong>V\u01b0\u01a1ng qu\u1ed1c Anh<\/strong><\/li>\n\n\n\n<li>C\u00e1c nh\u00e0 cung c\u1ea5p t\u1ea1i <strong>Nam Phi<\/strong> v\u00e0 <strong>Th\u00e1i Lan<\/strong><\/li>\n<\/ul>\n\n\n\n<p>Ph\u00e2n t\u00edch c\u1ee7a Insikt Group ph\u00e1t hi\u1ec7n h\u01a1n <strong>12.000 thi\u1ebft b\u1ecb m\u1ea1ng Cisco<\/strong> c\u00f3 giao di\u1ec7n web <strong>Web UI<\/strong> c\u00f4ng khai tr\u00ean Internet. Trong s\u1ed1 \u0111\u00f3, h\u01a1n <strong>1.000 thi\u1ebft b\u1ecb \u0111\u00e3 b\u1ecb nh\u1eafm m\u1ee5c ti\u00eau<\/strong>, chi\u1ebfm kho\u1ea3ng <strong>8% t\u1ed5ng s\u1ed1 thi\u1ebft b\u1ecb d\u1ec5 b\u1ecb t\u1ea5n c\u00f4ng<\/strong>, cho th\u1ea5y chi\u1ebfn d\u1ecbch t\u1ea5n c\u00f4ng c\u00f3 ch\u1ee7 \u0111\u00edch nh\u1eafm v\u00e0o c\u00e1c nh\u00e0 cung c\u1ea5p d\u1ecbch v\u1ee5 vi\u1ec5n th\u00f4ng.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"815\" height=\"510\" src=\"https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-1.png\" alt=\"\" class=\"wp-image-21596\" srcset=\"https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-1.png 815w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-1-600x375.png 600w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-1-300x188.png 300w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-1-768x481.png 768w\" sizes=\"auto, (max-width: 815px) 100vw, 815px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"has-text-align-center\"><em>Salt Typhoon Thi\u1ebft b\u1ecb Cisco nh\u1eafm m\u1ee5c ti\u00eau | Ngu\u1ed3n: Recorded Future<\/em><\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-77d98a3fabfcbfd4b4487ed51fd08546\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>Chi\u1ebfn thu\u1eadt c\u1ee7a nh\u00f3m Salt Typhoon<\/strong><\/p>\n\n\n\n<p>Nh\u00f3m Salt Typhoon (c\u00f2n \u0111\u01b0\u1ee3c bi\u1ebft \u0111\u1ebfn v\u1edbi c\u00e1c t\u00ean g\u1ecdi kh\u00e1c nh\u01b0 <strong>FamousSparrow<\/strong> v\u00e0 <strong>GhostEmperor<\/strong>) s\u1eed d\u1ee5ng k\u1ef9 thu\u1eadt <strong>Generic Routing Encapsulation (GRE) tunnels<\/strong> tr\u00ean c\u00e1c thi\u1ebft b\u1ecb Cisco b\u1ecb x\u00e2m nh\u1eadp \u0111\u1ec3:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Duy tr\u00ec s\u1ef1 hi\u1ec7n di\u1ec7n l\u00e2u d\u00e0i<\/strong> (<em>persistence<\/em>)<\/li>\n\n\n\n<li><strong>Tr\u00e1nh b\u1ecb ph\u00e1t hi\u1ec7n<\/strong> (<em>evade detection<\/em>)<\/li>\n\n\n\n<li><strong>\u1ea8n gi\u1ea5u d\u1eef li\u1ec7u \u0111\u00e1nh c\u1eafp<\/strong> b\u1eb1ng c\u00e1ch \u0111\u00f3ng g\u00f3i n\u00f3 trong c\u00e1c g\u00f3i tin GRE<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"785\" height=\"735\" src=\"https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-2.png\" alt=\"\" class=\"wp-image-21597\" srcset=\"https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-2.png 785w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-2-600x562.png 600w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-2-300x281.png 300w, https:\/\/vacif.com\/en\/wp-content\/uploads\/sites\/3\/2025\/02\/image-2-768x719.png 768w\" sizes=\"auto, (max-width: 785px) 100vw, 785px\" \/><\/figure>\n\n\n\n<p class=\"has-text-align-center\"><em>H\u00ecnh 1: C\u01a1 s\u1edf h\u1ea1 t\u1ea7ng khai th\u00e1c thi\u1ebft bi m\u1ea1ng RedMike Cisco (Ngu\u1ed3n: Recorder Future)<\/em><\/p>\n\n\n\n<p>V\u00e0o gi\u1eefa th\u00e1ng 12 n\u0103m 2024, nh\u00f3m n\u00e0y c\u00f2n b\u1ecb ph\u00e1t hi\u1ec7n th\u1ef1c hi\u1ec7n c\u00e1c ho\u1ea1t \u0111\u1ed9ng trinh s\u00e1t tr\u00ean h\u1ea1 t\u1ea7ng vi\u1ec5n th\u00f4ng c\u1ee7a <strong>Mytel<\/strong> \u2013 m\u1ed9t nh\u00e0 m\u1ea1ng t\u1ea1i Myanmar.<\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-4572e5176f64708075c9d34d644432bc\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>Khuy\u1ebfn ngh\u1ecb b\u1ea3o m\u1eadt<\/strong><\/p>\n\n\n\n<p>Nh\u00f3m Insikt Group khuy\u1ebfn ngh\u1ecb:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>C\u1eadp nh\u1eadt b\u1ea3n v\u00e1 cho thi\u1ebft b\u1ecb <strong>Cisco IOS XE<\/strong> ngay l\u1eadp t\u1ee9c.<\/li>\n\n\n\n<li><strong>H\u1ea1n ch\u1ebf<\/strong> vi\u1ec7c ti\u1ebfp c\u1eadn c\u00e1c giao di\u1ec7n qu\u1ea3n tr\u1ecb v\u00e0 d\u1ecbch v\u1ee5 kh\u00f4ng c\u1ea7n thi\u1ebft t\u1eeb Internet.<\/li>\n<\/ul>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-181edfe784d0907f9ebc3d9aa4e92cdd\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>Chi\u1ebfn d\u1ecbch t\u1ea5n c\u00f4ng r\u1ed9ng h\u01a1n c\u1ee7a Salt Typhoon<\/strong><\/p>\n\n\n\n<p>Salt Typhoon \u0111\u00e3 ho\u1ea1t \u0111\u1ed9ng t\u1eeb <strong>\u00edt nh\u1ea5t n\u0103m 2019<\/strong>, t\u1eadp trung v\u00e0o c\u00e1c c\u01a1 quan ch\u00ednh ph\u1ee7 v\u00e0 doanh nghi\u1ec7p vi\u1ec5n th\u00f4ng tr\u00ean to\u00e0n th\u1ebf gi\u1edbi.<\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-6e954474a0c608e603e9004253c4b59b\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>M\u1edf r\u1ed9ng ph\u1ea1m vi t\u1ea1i Hoa K\u1ef3<\/strong><\/p>\n\n\n\n<p>V\u00e0o th\u00e1ng 1 n\u0103m 2025, <em>The Wall Street Journal<\/em> <a href=\"https:\/\/www.wsj.com\/tech\/cybersecurity\/typhoon-china-hackers-military-weapons-97d4ef95\"><strong>b\u00e1o c\u00e1o<\/strong><\/a> r\u1eb1ng nh\u00f3m n\u00e0y \u0111\u00e3 x\u00e2m nh\u1eadp v\u00e0o nhi\u1ec1u nh\u00e0 m\u1ea1ng Hoa K\u1ef3 h\u01a1n so v\u1edbi \u01b0\u1edbc t\u00ednh ban \u0111\u1ea7u, bao g\u1ed3m:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Charter Communications<\/strong><\/li>\n\n\n\n<li><strong>Windstream<\/strong><\/li>\n<\/ul>\n\n\n\n<p>C\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng n\u00e0y khai th\u00e1c l\u1ed7 h\u1ed5ng trong thi\u1ebft b\u1ecb m\u1ea1ng c\u1ee7a c\u00e1c h\u00e3ng l\u1edbn nh\u01b0 <strong>Cisco<\/strong> v\u00e0 <strong>Fortinet<\/strong>.<\/p>\n\n\n\n<p>Cu\u1ed1i th\u00e1ng 12 n\u0103m 2024, m\u1ed9t quan ch\u1ee9c Nh\u00e0 Tr\u1eafng x\u00e1c nh\u1eadn r\u1eb1ng <strong>Salt Typhoon \u0111\u00e3 x\u00e2m nh\u1eadp th\u00e0nh c\u00f4ng v\u00e0o t\u1ed5ng c\u1ed9ng ch\u00edn nh\u00e0 m\u1ea1ng vi\u1ec5n th\u00f4ng M\u1ef9<\/strong>, nh\u01b0 m\u1ed9t ph\u1ea7n c\u1ee7a chi\u1ebfn d\u1ecbch gi\u00e1n \u0111i\u1ec7p m\u1ea1ng nh\u1eafm v\u00e0o c\u00e1c c\u00f4ng ty vi\u1ec5n th\u00f4ng to\u00e0n c\u1ea7u.<\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-d9e77d43dca40ab5bc7996fdbaf55175\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>Ph\u1ea3n \u1ee9ng c\u1ee7a Nh\u00e0 Tr\u1eafng v\u00e0 Ch\u00ednh ph\u1ee7 Hoa K\u1ef3<\/strong><\/p>\n\n\n\n<p>C\u1ed1 v\u1ea5n An ninh m\u1ea1ng Nh\u00e0 Tr\u1eafng, <strong>Anne Neuberger<\/strong>, ti\u1ebft l\u1ed9 r\u1eb1ng v\u1ee5 vi ph\u1ea1m m\u1edbi nh\u1ea5t \u0111\u01b0\u1ee3c ph\u00e1t hi\u1ec7n sau khi ch\u00ednh quy\u1ec1n T\u1ed5ng th\u1ed1ng Biden ban h\u00e0nh h\u01b0\u1edbng d\u1eabn nh\u1eb1m ph\u00e1t hi\u1ec7n ho\u1ea1t \u0111\u1ed9ng c\u1ee7a Salt Typhoon.<\/p>\n\n\n\n<p>V\u00e0o \u0111\u1ea7u th\u00e1ng 12 n\u0103m 2024, Neuberger x\u00e1c nh\u1eadn r\u1eb1ng nh\u00f3m n\u00e0y \u0111\u00e3 t\u1ea5n c\u00f4ng v\u00e0o c\u00e1c c\u00f4ng ty vi\u1ec5n th\u00f4ng t\u1ea1i <strong>h\u00e0ng ch\u1ee5c qu\u1ed1c gia<\/strong>, ch\u1ee7 y\u1ebfu thu th\u1eadp <strong>metadata<\/strong> v\u00e0 c\u00e1c d\u1eef li\u1ec7u li\u00ean l\u1ea1c quan tr\u1ecdng, \u0111\u1eb7c bi\u1ec7t t\u1eeb <strong>ch\u00ednh ph\u1ee7<\/strong> v\u00e0 <strong>gi\u1edbi ch\u00ednh tr\u1ecb<\/strong>.<\/p>\n\n\n\n<p>Trong c\u00f9ng th\u00e1ng, c\u00e1c nh\u00e0 m\u1ea1ng l\u1edbn c\u1ee7a M\u1ef9 nh\u01b0 <strong>AT&amp;T<\/strong> v\u00e0 <strong>Verizon<\/strong> tuy\u00ean b\u1ed1 \u0111\u00e3 b\u1ea3o v\u1ec7 h\u1ec7 th\u1ed1ng c\u1ee7a h\u1ecd sau c\u00e1c n\u1ed7 l\u1ef1c t\u1ea5n c\u00f4ng gi\u00e1n \u0111i\u1ec7p m\u1ea1ng t\u1eeb Salt Typhoon.<\/p>\n\n\n\n<p>D\u00f9 quy m\u00f4 t\u1ea5n c\u00f4ng l\u1edbn, Neuberger kh\u1eb3ng \u0111\u1ecbnh:<\/p>\n\n\n\n<p><em>\u201cCho \u0111\u1ebfn th\u1eddi \u0111i\u1ec3m n\u00e0y, ch\u00fang t\u00f4i ch\u01b0a ph\u00e1t hi\u1ec7n b\u1ea5t k\u1ef3 th\u00f4ng tin li\u00ean l\u1ea1c m\u1eadt n\u00e0o b\u1ecb x\u00e2m ph\u1ea1m.\u201d<\/em><\/p>\n\n\n\n<p class=\"has-white-color has-text-color has-background has-link-color has-medium-font-size wp-elements-1fc806612094308ce7393ed4ced44cae\" style=\"background-color:#055ab5;font-style:normal;font-weight:700\"><strong>C\u1ea3nh b\u00e1o v\u00e0 bi\u1ec7n ph\u00e1p ph\u00f2ng v\u1ec7 to\u00e0n c\u1ea7u<\/strong><\/p>\n\n\n\n<p>V\u00e0o th\u00e1ng 12 n\u0103m 2024, c\u00e1c c\u01a1 quan an ninh m\u1ea1ng qu\u1ed1c t\u1ebf \u0111\u00e3 \u0111\u01b0a ra c\u1ea3nh b\u00e1o chung v\u1ec1 c\u00e1c chi\u1ebfn d\u1ecbch gi\u00e1n \u0111i\u1ec7p m\u1ea1ng li\u00ean quan \u0111\u1ebfn <strong>C\u1ed9ng h\u00f2a Nh\u00e2n d\u00e2n Trung Hoa (PRC)<\/strong>, nh\u1eafm v\u00e0o h\u1ea1 t\u1ea7ng vi\u1ec5n th\u00f4ng to\u00e0n c\u1ea7u.<\/p>\n\n\n\n<p>C\u00e1c c\u01a1 quan n\u00e0y c\u0169ng ph\u00e1t h\u00e0nh t\u00e0i li\u1ec7u:<\/p>\n\n\n\n<p><strong><a href=\"https:\/\/www.cisa.gov\/resources-tools\/resources\/enhanced-visibility-and-hardening-guidance-communications-infrastructure\">H\u01b0\u1edbng d\u1eabn t\u0103ng c\u01b0\u1eddng gi\u00e1m s\u00e1t v\u00e0 b\u1ea3o v\u1ec7 h\u1ea1 t\u1ea7ng truy\u1ec1n th\u00f4ng<\/a><\/strong> (<em>Enhanced Visibility and Hardening Guidance for Communications Infrastructure<\/em>)<\/p>\n\n\n\n<p>T\u00e0i li\u1ec7u n\u00e0y cung c\u1ea5p cho c\u00e1c k\u1ef9 s\u01b0 m\u1ea1ng v\u00e0 chuy\u00ean gia b\u1ea3o m\u1eadt nh\u1eefng ph\u01b0\u01a1ng ph\u00e1p t\u1ed1t nh\u1ea5t \u0111\u1ec3 t\u0103ng c\u01b0\u1eddng kh\u1ea3 n\u0103ng ph\u00e1t hi\u1ec7n v\u00e0 b\u1ea3o v\u1ec7 thi\u1ebft b\u1ecb m\u1ea1ng kh\u1ecfi c\u00e1c cu\u1ed9c t\u1ea5n c\u00f4ng t\u1eeb <strong>PRC<\/strong> v\u00e0 c\u00e1c t\u00e1c nh\u00e2n \u0111e d\u1ecda kh\u00e1c.<\/p>\n\n\n\n<p>C\u00e1c c\u01a1 quan tham gia bao g\u1ed3m:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>CISA (C\u01a1 quan An ninh m\u1ea1ng &amp; C\u01a1 s\u1edf h\u1ea1 t\u1ea7ng Hoa K\u1ef3)<\/strong><\/li>\n\n\n\n<li><strong>NSA (C\u01a1 quan An ninh Qu\u1ed1c gia Hoa K\u1ef3)<\/strong><\/li>\n\n\n\n<li><strong>FBI (C\u1ee5c \u0110i\u1ec1u tra Li\u00ean bang Hoa K\u1ef3)<\/strong><\/li>\n\n\n\n<li><strong>ASD (C\u1ee5c T\u00edn hi\u1ec7u \u00dac)<\/strong><\/li>\n\n\n\n<li><strong>CCCS (Trung t\u00e2m An ninh m\u1ea1ng Canada)<\/strong><\/li>\n\n\n\n<li><strong>NCSC-NZ (Trung t\u00e2m An ninh m\u1ea1ng qu\u1ed1c gia New Zealand)<\/strong><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>By The Cyber Security Hub\u2122 Nh\u00f3m APT (Advanced Persistent Threat) Salt Typhoon ti\u1ebfp t\u1ee5c li\u00ean h\u1ec7 v\u1edbi Trung Qu\u1ed1c v\u1ec1 vi\u1ec7c t\u1ea5n c\u00f4ng v\u00e0o c\u00e1c nh\u00e0 cung c\u1ea5p d\u1ecbch v\u1ee5 vi\u1ec5n th\u00f4ng tr\u00ean to\u00e0n c\u1ea7u. Theo b\u00e1o c\u00e1o c\u1ee7a Insikt Group thu\u1ed9c Recorded Future, c\u00e1c t\u00e1c nh\u00e2n \u0111e d\u1ecda n\u00e0y \u0111\u00e3 x\u00e2m nh\u1eadp v\u00e0o h\u1ec7 [&hellip;]<\/p>\n","protected":false},"author":36,"featured_media":21598,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_eb_attr":"","ocean_post_layout":"","ocean_both_sidebars_style":"","ocean_both_sidebars_content_width":0,"ocean_both_sidebars_sidebars_width":0,"ocean_sidebar":"","ocean_second_sidebar":"","ocean_disable_margins":"enable","ocean_add_body_class":"","ocean_shortcode_before_top_bar":"","ocean_shortcode_after_top_bar":"","ocean_shortcode_before_header":"","ocean_shortcode_after_header":"","ocean_has_shortcode":"","ocean_shortcode_after_title":"","ocean_shortcode_before_footer_widgets":"","ocean_shortcode_after_footer_widgets":"","ocean_shortcode_before_footer_bottom":"","ocean_shortcode_after_footer_bottom":"","ocean_display_top_bar":"default","ocean_display_header":"default","ocean_header_style":"","ocean_center_header_left_menu":"","ocean_custom_header_template":"","ocean_custom_logo":0,"ocean_custom_retina_logo":0,"ocean_custom_logo_max_width":0,"ocean_custom_logo_tablet_max_width":0,"ocean_custom_logo_mobile_max_width":0,"ocean_custom_logo_max_height":0,"ocean_custom_logo_tablet_max_height":0,"ocean_custom_logo_mobile_max_height":0,"ocean_header_custom_menu":"","ocean_menu_typo_font_family":"","ocean_menu_typo_font_subset":"","ocean_menu_typo_font_size":0,"ocean_menu_typo_font_size_tablet":0,"ocean_menu_typo_font_size_mobile":0,"ocean_menu_typo_font_size_unit":"px","ocean_menu_typo_font_weight":"","ocean_menu_typo_font_weight_tablet":"","ocean_menu_typo_font_weight_mobile":"","ocean_menu_typo_transform":"","ocean_menu_typo_transform_tablet":"","ocean_menu_typo_transform_mobile":"","ocean_menu_typo_line_height":0,"ocean_menu_typo_line_height_tablet":0,"ocean_menu_typo_line_height_mobile":0,"ocean_menu_typo_line_height_unit":"","ocean_menu_typo_spacing":0,"ocean_menu_typo_spacing_tablet":0,"ocean_menu_typo_spacing_mobile":0,"ocean_menu_typo_spacing_unit":"","ocean_menu_link_color":"","ocean_menu_link_color_hover":"","ocean_menu_link_color_active":"","ocean_menu_link_background":"","ocean_menu_link_hover_background":"","ocean_menu_link_active_background":"","ocean_menu_social_links_bg":"","ocean_menu_social_hover_links_bg":"","ocean_menu_social_links_color":"","ocean_menu_social_hover_links_color":"","ocean_disable_title":"default","ocean_disable_heading":"default","ocean_post_title":"","ocean_post_subheading":"","ocean_post_title_style":"","ocean_post_title_background_color":"","ocean_post_title_background":0,"ocean_post_title_bg_image_position":"","ocean_post_title_bg_image_attachment":"","ocean_post_title_bg_image_repeat":"","ocean_post_title_bg_image_size":"","ocean_post_title_height":0,"ocean_post_title_bg_overlay":0.5,"ocean_post_title_bg_overlay_color":"","ocean_disable_breadcrumbs":"default","ocean_breadcrumbs_color":"","ocean_breadcrumbs_separator_color":"","ocean_breadcrumbs_links_color":"","ocean_breadcrumbs_links_hover_color":"","ocean_display_footer_widgets":"default","ocean_display_footer_bottom":"default","ocean_custom_footer_template":"","ocean_post_oembed":"","ocean_post_self_hosted_media":"","ocean_post_video_embed":"","ocean_link_format":"","ocean_link_format_target":"self","ocean_quote_format":"","ocean_quote_format_link":"post","ocean_gallery_link_images":"on","ocean_gallery_id":[],"footnotes":""},"categories":[80,17,10],"tags":[94,268],"class_list":["post-21595","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-huong-dan-tai-lieu","category-bao-mat","category-tin-tuc","tag-bao-mat","tag-bao-mat-co-so-du-lieu","entry","has-media"],"_links":{"self":[{"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/posts\/21595","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/users\/36"}],"replies":[{"embeddable":true,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/comments?post=21595"}],"version-history":[{"count":4,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/posts\/21595\/revisions"}],"predecessor-version":[{"id":21602,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/posts\/21595\/revisions\/21602"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/media\/21598"}],"wp:attachment":[{"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/media?parent=21595"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/categories?post=21595"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/vacif.com\/en\/wp-json\/wp\/v2\/tags?post=21595"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}