ANI
24 Jul 2025, 17:05 GMT+10
Washington DC [US] July 24 (ANI): Three hacking groups linked to China are part of a large-scale cyberattack targeting users of widely used Microsoft server software, impacting numerous organisations worldwide, according to the report by Politico.
According to two US officials, federal investigators suspect that several US government agencies are among the initial victims of this ongoing cyber exploitation campaign, although the complete extent remains uncertain.
Microsoft acknowledged in a blog post that three Chinese hacking groups, referred to as Violet Typhoon, Linen Typhoon, and Storm-2603, are participating in the hacking operation. Approximately 100 organisations, including at least two US federal agencies, are believed to be victims of these hacks, as stated by one US official involved in the incident response and a second who has been informed about it. Both officials spoke on the condition of anonymity due to the ongoing situation, as reported by Politico.
Since Saturday, private security researchers and federal investigators have been addressing the aftermath of the breach, which Microsoft initially reported due to unidentified hackers exploiting a major flaw in its customer-managed SharePoint servers, a commonly used workplace collaboration tool. Microsoft noted in a blog post that, given the rapid adoption of these exploits, it is highly confident that the threat actors will continue to implement them in their attacks on unpatched on-premises SharePoint systems.
The first US official indicated that investigators currently believe at least 'four to five' federal agencies were compromised, while more agencies are still under investigation. The second official noted that they were informed on Monday that 'more than one' federal agency had been affected.
The vulnerabilities in the SharePoint software are deemed critical as they permitted hackers to remotely infiltrate Microsoft customers utilising self-hosted versions of the service, enabling them to delve deeper into their networks. However, these vulnerabilities did not impact those operating a version of SharePoint hosted on Microsoft's cloud servers.
A Microsoft spokesperson stated that the company is working to ensure its customers apply the necessary fixes and is 'coordinating closely with CISA, DOD Cyber Defence Command, and key global cybersecurity partners throughout our response.' A spokesperson from CISA remarked that the tech firm has been 'responding quickly' since the agency first contacted them. This incident marks another breach in a series targeting the US technology giant, many of which have connections to China.
In 2023, Chinese hackers accessed emails from both the US ambassador to China and the US Commerce Secretary by taking advantage of a 'cascade' of Microsoft security flaws that were later criticised by a federal cyber review panel. Additionally, the Pentagon announced last week that it would review all its cloud products following an investigation that found engineers based in China had been providing technical support for Pentagon computer systems, as revealed by Politico. (ANI)
Get a daily dose of Middle East Star news through our daily email, its complimentary and keeps you fully up to date with world and business news as well.
Publish news of your business, community or sports group, personnel appointments, major event and more by submitting a news release to Middle East Star.
More InformationWashington DC [US] July 24 (ANI): Three hacking groups linked to China are part of a large-scale cyberattack targeting users of widely...
Washington DC [US], July 24 (ANI): US President Donald Trump has called for eschewing 'radical globalism' pursued by some of the country's...
New Delhi [India], July 24 (ANI): IBM has launched its what it claimed most advanced power server to date, named IBM Power11, in India....
TIANJIN, July 24 (Xinhua) -- Preserved at Beijing's Civil Aviation Museum, an Airbus A310 with the registration number B-2301 stands...
The European Commission chief has urged respect for the rule of law following Kievs crackdown on anti-corruption agencies European...
(Photo credit: Aaron Doster-Imagn Images) Field Level Media's Golf Glance provides weekly news and storylines from each of the major...
WASHINGTON, D.C.: The Trump administration has released over 240,000 pages of previously sealed FBI records detailing the government's...
TOPEKA, Kansas: In a campaign that sounds more like a science fiction plot than public policy, the U.S. government is preparing to...
SEOUL, South Korea: South Korean investigators probing the deadly Jeju Air crash in December have uncovered what they describe as clear...
TOKYO, Japan: In a surprising turn in Japan's upper house elections, the fringe far-right Sanseito party emerged as one of the biggest...
CASTEL GANDOLFO, Italy: Pope Leo has issued a heartfelt appeal for an end to the violence in Gaza, condemning what he described as...
NEW YORK CITY, New York: In recent months, a new and unusual image has become common across the United States: immigration officers...
