DHS and FBI Urge Americans to Encrypt Messaging Amid Chinese Cyberattack Threats

December 20, 2024
DHS and FBI Urge Americans to Encrypt Messaging Amid Chinese Cyberattack Threats
  • In response to recent widespread cyberattacks, the Department of Homeland Security has issued a public service announcement urging Americans to adopt end-to-end encrypted messaging apps.

  • The FBI has also recommended that Americans utilize end-to-end encrypted communications following the compromise of U.S. telecom networks by Chinese hackers.

  • This significant hacking operation, known as Salt Typhoon, has been linked to hackers associated with the Chinese government and has been ongoing since at least October 2024.

  • CISA published a bulletin on December 18, 2024, advising highly targeted individuals, such as government employees, to assume that all their communications are at risk of interception.

  • Users are also encouraged to make use of additional security features such as Apple's Lockdown Mode, Apple iCloud Private Relay, and Google Play Protect.

  • Popular messaging apps that offer end-to-end encryption include Signal, WhatsApp, and Dust, with Signal being highly recommended for its robust security features.

  • Setting up a telecom PIN is advised to prevent SIM-swapping attacks, which can compromise personal information.

  • CISA emphasizes that while no single solution can eliminate all risks, following best practices can greatly enhance the protection of sensitive communications.

  • To strengthen security, users should increase multi-factor authentication (MFA) by avoiding SMS-based options and opting for hardware-based security keys or authenticator codes.

  • Specific recommendations for smartphone users include restricting app permissions and utilizing encrypted DNS services to enhance their security.

  • Regular software updates and opting for newer smartphones with better security features are also recommended to bolster defenses against cyber threats.

  • CISA advises against using personal VPNs while recommending the continued use of enterprise VPNs to maintain secure communications.

Summary based on 2 sources


Get a daily email with more Tech stories

More Stories