Business

China-based hacking groups behind Microsoft SharePoint attack

Tech Giant Microsoft said on Tuesday that three groups of infiltrators in China were behind the constant electronic attack on SharePoint file sharing system.

The Microsoft Security Response Center for the first time published a blog on the attack against the local SharePoint servers on July 19, explaining that the attackers took advantage of the weaknesses related to the implementation of the remote symbol and the implementation of the distant code. SharePoint is a document sharing platform aimed at allowing users safely to share information within the institution and enhance cooperation.

In an update published on Tuesday, Microsoft referred to three China -based penetration groups as responsible for the electronic attack.

Microsoft wrote: “Until these lines, Microsoft noticed two Chinese actors in the national state, linen and violet dormitory, and took advantage of these weaknesses targeting the SharePoint servers facing the Internet,” Microsoft wrote. “In addition, we have noticed an other threat representative based in China, followed by Storm-2603, and took advantage of these weak points.”

Microsoft said three China -based penetration groups are likely to be behind SharePoint breach. (Cesc Maymo / Getty Images)

Cyber security experts warn of the “treacherous” scene increasingly, as the main brands are a victim of attacks

The Microsoft Publisher indicated that the Linen Typhoon hacker group has been active since 2012 and focused on theft of intellectual property with a special focus on government -related organizations, defense, strategic planning and human rights.

Typhoon Linen is known as Microsoft described as “concessions from the drive and historically dependent on the current exploits of equal organizations.”

index protection last Changing % Change
Msft Microsoft Corp. 505.87 +0.60

+0.12 %

The Typhoon group has been active in piracy since 2015 and was more focused on spying.

Microsoft said that the group targeted government members and former military personnel, NGOs, intellectual tanks, higher education, digital media and printing, as well as the financial and health care sectors in the United States, Europe and East Asia.

The target is the target giant in the ongoing industry internet splash

The hand is located on a keyboard, with a dual code display on the laptop screen.

Microsoft has identified piracy groups behind the ongoing attacks in a security update. (Jakub Porzycki / Nurphoto Via / Getty Images)

Microsoft said that Typhoon Violet is looking for vulnerabilities in the web infrastructure for its target institutions to exploit weaknesses and install web shells.

The Storm -2063 storm was also defined as participating in the breach, which he evaluated as a threat -based threat representative with medium confidence and indicated that he did not specify the links between that group and other well -known Chinese penetration groups.

Influent computer screens

The Microsoft Publisher indicated that the piracy group of linen has been active since 2012. ( / Istock)

The company added that although it noticed the ransom group in the past, it is currently unable to assess its goals with confidence.

Get Fox Business on the Go by clicking here

Microsoft said it has released security updates to protect the entire customers using all SharePoint versions and that customers must apply these updates immediately.

Don’t miss more hot News like this! Click here to discover the latest in Business news!

2025-07-23 20:33:00

Related Articles

Back to top button