Cyber ALERT: Chinese Hackers Breach Microsoft Business Email Software Raising Security Crisis Globally. Details Here

The espionage group is known to have exploited four vulnerabilities in Microsoft Exchange Server email software, which provided them access to email accounts, and also gave them the ability to install malware.

Updated: March 7, 2021 12:59 PM IST

By India.com News Desk | Edited by Shubhangi Gupta

Cyber ALERT: Chinese Hackers Breach Microsoft Business Email Software Raising Security Crisis Globally. Details Here

San Francisco: In a big cyber attack, China-based threat actors hacked at least 30,000 organisations across the US, including government and commercial firms, by using Microsoft’s Exchange Server software to enter their networks. The espionage group is known to have exploited four vulnerabilities in Microsoft Exchange Server email software, which provided them access to email accounts, and also gave them the ability to install malware.

Microsoft has reported the threat but did not reveal the scale at which tens of thousands of organisations have been hit.

“The Chinese hacking group seized control over “hundreds of thousands” of Microsoft Exchange Servers worldwide,” two cybersecurity experts who have briefed US national security advisors on the attack told KrebsOnSecurity. Notably, Exchange Server is primarily used by business customers.

Microsoft is currently trying to fix the vulnerabilities and has also released several security updates, advising its customers to install those immediately.

Earlier this week, Microsoft warned its customers against a new sophisticated nation-state cyber-attack that has its origin in China and is primarily targeting on-premises ‘Exchange Server’ software of the tech giant.

Called “Hafnium,” it operates from China and is attacking infectious disease researchers, law firms, higher education institutions, defence contractors, policy think tanks, and NGOs in the US for the purpose of exfiltrating information. “While Hafnium is based in China, it conducts its operations primarily from leased virtual private servers (VPS) in the US,” said Tom Burt, Corporate Vice President, Customer Security and Trust at Microsoft.

This was the eighth time in the past 12 months that Microsoft has publicly disclosed nation-state groups targeting institutions critical to civil society.

Also Read:

For breaking news and live news updates, like us on Facebook or follow us on Twitter and Instagram. Read more on Latest Technology News on India.com.

Topics

By clicking “Accept All Cookies”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts Cookies Policy.