Categories: The Verge

Microsoft says Chinese hacking groups are behind SharePoint attacks

Some of the attacks that targeted organizations using an exploit in Microsoft’s SharePoint server platform over the last few days have been linked to hacking groups affiliated with the Chinese government, according to a new Microsoft security blog

“As of this writing, Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting these vulnerabilities targeting internet-facing SharePoint servers,” Microsoft said on Tuesday. “In addition, we have observed another China-based threat actor, tracked as Storm-2603, exploiting these vulnerabilities. Investigations into other actors also using these exploits are still ongoing.”

Eye Security told BleepingComputer it’s identified 54 organizations that have been breached, including a private university and a private energy operator in California, and a federal government health organization. The Washington Post reports that anonymous sources working on the SharePoint intrusions said they’ve also identified that some attacks were connected to IP addresses inside China. 

Microsoft released a patch update for SharePoint 2016 servers on Tuesday morning, and it has now patched all versions of SharePoint that are impacted by the zero-day exploit. Microsoft’s update says it has assessed “with high confidence” that threat actors will continue using it to attack unpatched server systems now that it’s widely known. The vulnerability, which researchers at Eye Security published details about last week, allows hackers to access certain on-premises versions of SharePoint to steal sensitive data, harvest passwords, and move across connected services.

rssfeeds-admin

Share
Published by
rssfeeds-admin

Recent Posts

Crimson Desert Dev Promises Patch to Address ‘Discomfort Many Players Have Experienced With the Controls,’ Apologizes for Awful Keyboard and Mouse Experience

Crimson Desert developer Pearl Abyss has issued a message to players addressing complaints around the…

57 minutes ago

Resident Evil’s Big Nintendo Swing and a Miss

In a franchise as dense and prolific as Resident Evil, there’s bound to be a…

58 minutes ago

The Quadruple Death and Rebirth of Resident Evil 4

Having existed for three whole decades, the Resident Evil series naturally has a number of…

58 minutes ago

The Resident Evil Game That Died so That RE2 Could Live

Between unusually candid developers and an obsessive fan community that has spent years unearthing franchise…

58 minutes ago

Dropzone AI Launches Autonomous Threat Hunter

Dropzone AI has announced its AI-driven Threat Hunter, a continuous, autonomous hunting tool without adding…

1 hour ago

How Project Hail Mary Gets Rocky Right

Spoilers follow for Project Hail Mary.Let’s get something straight right out of the gate: Project…

2 hours ago

This website uses cookies.