Some of the attacks that targeted organizations using an exploit in Microsoft’s SharePoint server platform over the last few days have been linked to hacking groups affiliated with the Chinese government, according to a new Microsoft security blog.
“As of this writing, Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting these vulnerabilities targeting internet-facing SharePoint servers,” Microsoft said on Tuesday. “In addition, we have observed another China-based threat actor, tracked as Storm-2603, exploiting these vulnerabilities. Investigations into other actors also using these exploits are still ongoing.”
Eye Security told BleepingComputer it’s identified 54 organizations that have been breached, including a private university and a private energy operator in California, and a federal government health organization. The Washington Post reports that anonymous sources working on the SharePoint intrusions said they’ve also identified that some attacks were connected to IP addresses inside China.
Microsoft released a patch update for SharePoint 2016 servers on Tuesday morning, and it has now patched all versions of SharePoint that are impacted by the zero-day exploit. Microsoft’s update says it has assessed “with high confidence” that threat actors will continue using it to attack unpatched server systems now that it’s widely known. The vulnerability, which researchers at Eye Security published details about last week, allows hackers to access certain on-premises versions of SharePoint to steal sensitive data, harvest passwords, and move across connected services.
Crimson Desert developer Pearl Abyss has issued a message to players addressing complaints around the…
In a franchise as dense and prolific as Resident Evil, there’s bound to be a…
Having existed for three whole decades, the Resident Evil series naturally has a number of…
Between unusually candid developers and an obsessive fan community that has spent years unearthing franchise…
Dropzone AI has announced its AI-driven Threat Hunter, a continuous, autonomous hunting tool without adding…
Spoilers follow for Project Hail Mary.Let’s get something straight right out of the gate: Project…
This website uses cookies.