London Daily

Focus on the big picture.
Saturday, Nov 08, 2025

Revealed: China suspected of spying on Americans via Caribbean phone networks

Revealed: China suspected of spying on Americans via Caribbean phone networks

Security expert claims Chinese surveillance may have affected tens of thousands of Americans
China appears to have used mobile phone networks in the Caribbean to surveil US mobile phone subscribers as part of its espionage campaign against Americans, according to a mobile network security expert who has analysed sensitive signals data.

The findings paint an alarming picture of how China has allegedly exploited decades-old vulnerabilities in the global telecommunications network to route “active” surveillance attacks through telecoms operators.

The alleged attacks appear to be enabling China to target, track, and intercept phone communications of US phone subscribers, according to research and analysis by Gary Miller, a Washington state-based former mobile network security executive.

Miller, who has spent years analysing mobile threat intelligence reports and observations of signalling traffic between foreign and US mobile operators, said in some cases China appeared to have used networks in the Caribbean to conduct its surveillance.

At the heart of the allegations are claims that China, using a state-controlled mobile phone operator, is directing signalling messages to US subscribers, usually while they are travelling abroad.

Signalling messages are commands that are sent by a telecoms operators across the global network, unbeknownst to a mobile phone user. They allow operators to locate mobile phones, connect mobile phone users to one another, and assess roaming charges. But some signalling messages can be used for illegitimate purposes, such as tracking, monitoring, or intercepting communications.

US mobile phone operators can successfully block many such attempts, but Miller believes the US has not gone far enough to protect mobile phone users, who he believes are not aware of how insecure their communications are.

Miller focused his research on messages that he said did not appear legitimate, either because they were “unauthorised” by the GSMA, an international standard-setting body for the telecommunications industry, or because the messages were sent from a location that did not match where a user was travelling.

Miller recently left a job at Mobileum, a mobile security company that tracks and reports threats to mobile operators, to start Exigent Media, a cyberthreat research and media firm. He said he was sharing his findings with the Guardian to help expose “the severity of this activity” and to encourage the implementation of more effective countermeasures and security policies.
Advertisement

“Government agencies and Congress have been aware of public mobile network vulnerabilities for years,” he said. “Security recommendations made by our government have not been followed and are not sufficient to stop attackers.”

He added: “No one in the industry wants the public to know the severity of ongoing surveillance attacks. I want the public to know about it.”

At Mobileum, Miller was vice-president of solutions for network security and risk products, a role he said gave him access to information about threats on mobile networks around the world.

Miller said that he found that in 2018 China had conducted the highest number of apparent surveillance attacks against US mobile phone subscribers over 3G and 4G networks. He said the vast majority of these apparent attacks were routed through a state-owned telecoms operator, China Unicom, which he said pointed in very high likelihood to a state-sponsored espionage campaign.

Overall, Miller said he believed tens of thousands of US mobile users were affected by the alleged attacks emanating from China from 2018 to 2020.

“Once you get into the tens of thousands, the attacks qualify as mass surveillance, which is primarily for intelligence collection and not necessarily targeting high-profile targets. It might be that there are locations of interest, and these occur primarily while people are abroad,” Miller said. In other words, Miller said he believed the messages were indicative of surveillance of mass movement patterns and communication of US travellers.

Miller also found what he called unique cases in which the same mobile phone users who appear to have been targeted via China Unicom also appear to have been targeted simultaneously through two Caribbean operators: Cable & Wireless Communications (Flow) in Barbados and Bahamas Telecommunications Company (BTC).

The incidents, which occurred dozens of times over a four to eight-week period, were so unusual that Miller said they were a “strong and clear” indicator that these were coordinated attacks.

At the same time, Miller said that in 2019 most apparent attacks against US subscribers over the 3G network emanated from Barbados, while China significantly reduced the volume of messages to US subscribers.

“China reduced attack volumes in 2019, favouring more targeted espionage and likely using proxy networks in the Caribbean to conduct its attacks, having close ties in both trade and technology investment,” Miller said.
It is not clear whether any of the telecoms operators would have knowingly been involved in allegedly suspicious activity. In a statement, China Unicom said the company “strongly refutes the allegations that China Unicom has engaged in active surveillance attacks against US mobile phone subscribers using access to international telecommunications networks”.

Miller said he believed it was possible that a China entity directly or indirectly leased a network address from the Caribbean operators, allowing the messages to be coordinated and routed via the region’s telecoms firms without their knowledge. A spokeswoman for Cable & Wireless, which owns Flow in Barbados and BTC, declined to respond to the Guardian’s questions.

A spokesperson for the Chinese embassy in Washington said: “The Chinese government’s position on cybersecurity is consistent and clear. We firmly oppose and combat cyber-attacks of any kind. China is a staunch defender of cybersecurity.”

The Federal Communications Commission, the US telecommunications regulator, in April issued an order warning that it might shut down the US operations of China Unicom and other China-controlled entities. At the time, Ajit Pai, the FCC chairman, said the commission was concerned about the companies’ vulnerability to the “control of the Chinese Communist party”.

China Unicom responded to the FCC, saying it had a good record of compliance and had shown a willingness to cooperate with US law enforcement agencies. In its statement to the Guardian, China Unicom added that its US subsidiary operated “independently” in the US and in accordance with US laws. “China Unicom (Americas) has never been accused of misconduct and has never knowingly been the subject of investigation by any US law enforcement agency,” it said.

“We have an illusion of security when we talk on our mobile phones,” said James Lewis, the director of the Strategic Technologies Program at the Center for Strategic and International Studies (CSIS). “People don’t realise that we are under a sustained espionage attack on anything that connects to a network, and that this is just another example of a really aggressive and pretty sophisticated campaign.”
Newsletter

Related Articles

0:00
0:00
Close
Apple to Pay Google About One Billion Dollars Annually for Gemini AI to Power Next-Generation Siri
UK Signals Major Shift as Nuclear Arms Race Looms
BBC’s « Celebrity Traitors UK » Finale Breaks Records with 11.1 Million Viewers
UK Spy Case Collapse Highlights Implications for UK-Taiwan Strategic Alignment
On the Road to the Oscars? Meghan Markle to Star in a New Film
A Vote Worth a Trillion Dollars: Elon Musk’s Defining Day
AI Researchers Claim Human-Level General Intelligence Is Already Here
President Donald Trump Challenges Nigeria with Military Options Over Alleged Christian Killings
Nancy Pelosi Finally Announces She Will Not Seek Re-Election, Signalling End of Long Congressional Career
UK Pre-Budget Blues and Rate-Cut Concerns Pile Pressure on Pound
ITV Warns of Nine-Per-Cent Drop in Q4 Advertising Revenue Amid Budget Uncertainty
National Grid Posts Slightly Stronger-Than-Expected Half-Year Profit as Regulatory Investments Drive Growth
UK Business Lobby Urges Reeves to Break Tax Pledges and Build Fiscal Headroom
UK to Launch Consultation on Stablecoin Regulation on November 10
UK Savers Rush to Withdraw Pension Cash Ahead of Budget Amid Tax-Change Fears
Massive Spoilers Emerge from MAFS UK 2025: Couple Swaps, Dating App Leaks and Reunion Bombshells
Kurdish-led Crime Network Operates UK Mini-Marts to Exploit Migrants and Sell Illicit Goods
UK Income Tax Hike Could Trigger £1 Billion Cut to Scotland’s Budget, Warns Finance Secretary
Tommy Robinson Acquitted of Terror-related Charge After Phone PIN Dispute
Boris Johnson Condemns Western Support for Hamas at Jewish Community Conference
HII Welcomes UK’s Westley Group to Strengthen AUKUS Submarine Supply Chain
Tragedy in Serbia: Coach Mladen Žižović Collapses During Match and Dies at 44
Diplo Says He Dated Katy Perry — and Justin Trudeau
Dick Cheney, Former U.S. Vice President, Dies at 84
Trump Calls Title Removal of Andrew ‘Tragic Situation’ Amid Royal Fallout
UK Bonds Rally as Chancellor Reeves Briefs Markets Ahead of November Budget
UK Report Backs Generational Smoking Ban Ahead of Tobacco & Vapes Bill Review
UK’s Domino’s Pizza Group Reports Modest Like-for-Like Sales Growth in Q3
UK Supplies Additional Storm Shadow Missiles to Ukraine as Trump Alleges Russian Underground Nuclear Tests
High-Profile Broodmare Puca Sells for Five Million Dollars at Fasig-Tipton ‘Night of the Stars’
Wilt Chamberlain’s One-of-a-Kind ‘Searcher 1’ Supercar Heads to Auction
Erling Haaland’s Remarkable Run: 13 Premier League Goals in 10 Matches and Eyes on History
UK Labour Peer Warns of Emerging ‘Constituency for Hating Jews’ in Britain
UK Home Secretary Admits Loss of Border Control, Warns Public Trust at Risk
President Trump Expresses Sympathy for UK Royal Family After Title Stripping of Prince Andrew
Former Prince Andrew to Lose His Last Military Title as King Charles Moves to End His Public Role
King Charles Relocates Andrew to Sandringham Estate and Strips Titles Amid Epstein Fallout
Two Arrested After Mass Stabbing on UK Train Leaves Ten Hospitalised
Glamour UK Says ‘Stay Mad Jo x’ After Really Big Rowling Backlash
Former Prince Prince Andrew Faces Possible U.S. Congressional Appearance Over Jeffrey Epstein Inquiry
UK Faces £20 Billion Productivity Shortfall as Brexit’s Impact Deepens
UK Chancellor Rachel Reeves Eyes New Council-Tax Bands for High-Value Homes
UK Braces for Major Storm with Snow, Heavy Rain and Winds as High as 769 Miles Wide
U.S. Secures Key Southeast Asia Agreements to Reshape Rare Earth Supply Chains
US and China Agree One-Year Trade Truce After Trump-Xi Talks
BYD Profit Falls 33 % as Chinese EV Maker Doubles Down on Overseas Markets
US Philanthropists Shift Hundreds of Millions to UK to Evade Regulatory Uncertainty in Trump Era
Israeli Energy Minister Delays $35 Billion Gas Export Agreement with Egypt
King Charles Strips Prince Andrew of Titles and Royal Residence
Trump–Putin Budapest Summit Cancelled After Moscow Memo Raises Conditions for Ukraine Talks
×