Microsoft’s SharePoint Patch Failed To Stop Attacks As China-Linked Hackers Target Global Organisations

<p>A critical security flaw in Microsoft&rsquo;s SharePoint server software has triggered a wave of cyber espionage targeting nearly 100 organisations globally. Although Microsoft released a patch earlier this month, the company has now confirmed that the initial fix failed to fully close the loophole, as reported by Reuters.</p>
<p>The vulnerability, first uncovered at a hacking competition in May, is being exploited by multiple China-linked groups, with thousands of systems potentially exposed to the threat. A second patch has since been issued, but the damage may already be widespread.</p>
<h3><span style=”color: #ba372a;”><strong>First Patch Missed The Mark</strong></span></h3>
<p>The vulnerability was originally identified in May during a Berlin-based hacking contest hosted by Trend Micro, which offered a $100,000 prize for unearthing a zero-day exploit in Microsoft SharePoint. A researcher from Viettel, a Vietnamese state-owned telecom company, demonstrated how the flaw, dubbed &ldquo;ToolShell&rdquo; could be used to breach servers. Microsoft released a patch on July 8 and classified the bug as a critical issue.</p>
<p>But that fix didn&rsquo;t work. Just ten days later, cybersecurity firms began reporting increased malicious activity targeting the same SharePoint systems the patch was meant to protect. British firm Sophos confirmed in a blog post that attackers had already developed exploits that could bypass the update.</p>
<h3><span style=”color: #ba372a;”><strong>China-Linked Groups Allegedly Behind Attacks</strong></span></h3>
<p>In a blog post, Microsoft identified three China-based hacking groups, Linen Typhoon, Violet Typhoon, and an unnamed third actor, as the key players exploiting the vulnerability. Both Microsoft and Google have said the initial wave of attacks appeared to be connected to China-linked threat actors.</p>
<p>China&rsquo;s embassy in Washington denied any involvement, saying the country opposed all forms of cyberattacks and accused others of making allegations without solid proof.</p>
<p>It remains unclear who is definitively behind the attacks, but experts believe the campaign is likely to spread as other hackers join in.</p>
<h3><span style=”color: #ba372a;”><strong>Sensitive US Agency Among Victims</strong></span></h3>
<p>Bloomberg reported that the US National Nuclear Security Administration, which oversees the country&rsquo;s nuclear arsenal, was among those breached. However, no classified information is believed to have been compromised.</p>
<p>Microsoft, the US Energy Department, and the Cybersecurity and Infrastructure Security Agency did not immediately respond to Reuters&rsquo; requests for comment on that report.</p>
<h3><span style=”color: #ba372a;”><strong>Thousands Of Servers Potentially At Risk</strong></span></h3>
<p>Data from the search engine Shodan shows more than 8,000 SharePoint servers that could be at risk of compromise. The Shadowserver Foundation, which scans the internet for digital vulnerabilities, placed the number slightly higher at over 9,000. These servers span a broad range of sectors, from finance and healthcare to industrial companies and government agencies. Most affected systems appear to be located in the United States and Germany.</p>
<p>Despite vulnerabilities existing in some German networks, the country&rsquo;s Federal Office for Information Security said on Tuesday that no government servers had been compromised.</p>
<p>Trend Micro noted that vendors participating in such security initiatives are expected to patch issues in a timely and effective way. While acknowledging that patches occasionally fail, the firm said SharePoint has experienced similar issues in the past.</p>

About The Author

  • Related Posts

    Realme 15 5G Series Launching Today: Know Price in India, Features and Specifications

    Realme 15 5G Series is scheduled to be launched in India today, July 24. It will debut as the successor to the Realme 14 Pro 5G series which was introduced…

    Astronomers Solve Betelgeuse’s 6-Year Dimming Mystery by Spotting Secret Companion Star

    Astronomers have finally spotted Betelgeuse’s hidden companion star, ending a 1,000-year mystery about its six-year dimming cycle. Using Gemini North’s advanced imaging, researchers captured the first image of the elusive…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Russia, Ukraine Agree To Swap Prisoners Of War Amid Peace Talks In Turkey

    • 1 views
    Russia, Ukraine Agree To Swap Prisoners Of War Amid Peace Talks In Turkey

    India’s Mobile Phone Exports Rise 127 Times To Rs 2 lakh Crore In 10 Years

    • 1 views
    India’s Mobile Phone Exports Rise 127 Times To Rs 2 lakh Crore In 10 Years

    Railways Sanctions Rs 1.9 Lakh Crore Projects In 4 Years: Ashwini Vaishnaw

    • 1 views
    Railways Sanctions Rs 1.9 Lakh Crore Projects In 4 Years: Ashwini Vaishnaw

    Trump Was Told He Is In Epstein Files: Report

    • 1 views
    Trump Was Told He Is In Epstein Files: Report

    4 साल, 4 ब्रिटिश पीएम और अब सफलता… यूके और भारत के बीच FTA में कब-कब क्‍या-क्‍या हुआ 

    • 3 views
    4 साल, 4 ब्रिटिश पीएम और अब सफलता… यूके और भारत के बीच FTA में कब-कब क्‍या-क्‍या हुआ 

    जल जीवन मिशन योजना के एक युवा ठेकेदार ने की आत्महत्या

    • 4 views
    जल जीवन मिशन योजना के एक युवा ठेकेदार ने की आत्महत्या