Sen. Blumenthal wants FCC to get busy on telecom wiretap security rules
Full article634 words · extracted from cyberscoop.com · click to collapse
Get our latest cybersecurity news first on Google.
The subcommittee chair said the FCC has the ability to act now in response to Salt Typhoon targeting the 2024 presidential campaigns.
Listen to this article
0:00
Learn more.
A top senator on Tuesday urged the Federal Communications Commission to begin writing rules that would create mandatory security standards for wiretapping systems embedded in the networks of telecommunications carriers.
The suggestion to act immediately from Sen. Richard Blumenthal, D-Conn., comes in response to Chinese hackers known as Salt Typhoon, targeting the phones of both 2024 presidential campaigns via the so-called “lawful access” program, which mandates that telecoms assist the U.S. government in its surveillance efforts. The hacking campaign has spurred considerable congressional interest.
It also comes after the election of Donald Trump for president and as his administration prepares to take over in January. But at a hearing of his Senate Judiciary Subcommittee on Privacy, Technology and the Law, Blumenthal said the issue is bipartisan and any rulemaking should continue into next year.
“Think of it for a moment: A foreign adversary attempted to wiretap both presidential campaigns during this past election,” he said at the hearing. “We’re still learning each week about how sprawling and catastrophic this hacking campaign was. What we know now, and it’s publicly known, should galvanize action now. We need to ensure that these specific types of hacks will never happen again.”
Adam Meyers, senior vice president of the cybersecurity firm CrowdStrike, said hackers who infiltrate the lawful access program could collect call times, call contents, text message traffic, where a call is coming from and whom a target is with — opening up the ability to then target those additional parties.
“The lawful intercept rules that are present for lawful purposes, if there’s a warrant or other means for law enforcement to collect information, is a gold mine for a foreign threat actor,” he told Blumenthal’s panel.
The FCC should also launch an investigation, Blumenthal said. The commission reportedly requested a briefing from national security officials on the Salt Typhoon intrusions, but a spokesperson declined to comment last week on whether it received that briefing.
“The FCC has the legal authority, right now it has the power, to set and enforce security standards,” Blumenthal said.
Blumethal’s urging is an echo of other calls last month for the FCC to take up those security standards. The extent to which the Trump administration will embrace minimum critical infrastructure security standards, though, is unclear.
Latest Podcasts
Government
FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching
Feds accuse China of ‘systematic’ distillation of U.S. AI models
CIA’s Michael Ellis says cyber intelligence is changing how the agency operates
The G7 tells industry to hurry up and prep for post-quantum encryption
Technology
Threats
Microsoft discloses two actively exploited zero-days among 974 vulnerabilities
Russian national extradited to US for alleged involvement in bank-account takeover scheme
Attackers exploit zero-days in consistently besieged SonicWall product
Jail time for Maine child in 764 marks turning point in federal law enforcement
Policy
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/sen-blumenthal-wants-fcc-to-get-busy-on-telecom-wiretap-security-rules/