Industry News

T-Mobile Cut a Cable to Kick Chinese Hackers Off Its Network

TechCrunch · 19 Aug 2026
Key Takeaway Even small businesses should have a plan to quickly isolate compromised systems or devices, since fast containment can be the difference between a contained incident and a major breach.

New reporting from Bloomberg has detailed how T-Mobile's cybersecurity team detected and forcibly removed Chinese hackers from its network in 2024. The intrusion was part of a broader campaign in which Beijing-linked attackers targeted multiple U.S. telecom providers, reportedly seeking to access customer data and communications records.

According to the report, T-Mobile's response included physically disconnecting a network cable to cut off the attackers' access — a drastic but effective step that highlights how seriously major providers are treating state-sponsored intrusions. The incident is part of a wider pattern of Chinese hacking campaigns against telecommunications firms, which have raised concerns about the security of critical communications infrastructure.

While this case involved a large telecom carrier, it's a reminder that supply chains and service providers — including the phone and internet companies small businesses rely on — can be targeted by sophisticated, well-resourced attackers. Even if your business doesn't face nation-state threats directly, incidents like this show why monitoring network activity and having a rapid response plan matter at every scale.

Summarised by CISO AI from TechCrunch. We link back to every original so you can read it yourself.