Microsoft Reveals Chinese Hackers Targeting SharePoint Servers

Thu Jul 24 2025 02:39:30 GMT+0300 (Eastern European Summer Time)
Microsoft Reveals Chinese Hackers Targeting SharePoint Servers

Security breach affects businesses as Microsoft uncovers infiltration by Chinese state-backed groups.


Microsoft has disclosed a serious security breach involving its SharePoint servers, attributed to Chinese hacking groups, impacting numerous businesses across various sectors.


Chinese "threat actors" have successfully infiltrated Microsoft's SharePoint document software servers, posing a significant risk to the data of various businesses utilizing the platform. As confirmed by Microsoft, state-backed groups including Linen Typhoon and Violet Typhoon, along with the China-based Storm-2603, have exploited existing vulnerabilities in on-premises SharePoint servers, which are widely used by enterprise customers, though their cloud-based services remain unaffected.

In response to the breach, the tech giant has released crucial security updates and advised all on-premises SharePoint server users to implement them immediately. "Our investigations are ongoing as we assess other potential actors who may be utilizing these exploits," Microsoft noted. The firm expressed "high confidence" that the hack would continue to pose a threat to systems where these security updates are not applied.

Microsoft detailed a troubling trend where hackers were able to send requests to SharePoint servers, thereby facilitating the theft of key materials from their victims. Charles Carmakal, Chief Technology Officer at Mandiant, a Google Cloud subsidiary, revealed that multiple victims across varied sectors and global regions had been targeted, suggesting that both governmental and business entities using SharePoint were under threat.

Carmakal also indicated that adversaries stole encrypted material, allowing them to maintain ongoing access to compromised SharePoint data. "This has been exploited broadly and opportunistically before patches were available, underscoring its significance," he emphasized.

According to Microsoft, Linen Typhoon has spent 13 years focusing on intellectual property theft, specifically targeting organizations linked to government, defense, strategic planning, and human rights. Meanwhile, Violet Typhoon has concentrated on espionage efforts, predominantly at past government and military personnel, NGOs, think tanks, academic institutions, media organizations, the financial sector, and healthcare in the US, Europe, and East Asia. Additionally, Storm-2603 has been assessed as a medium-confidence China-based threat actor.

MORE ON THEME

Tue, 22 Jul 2025 18:16:57 GMT

Philippines and U.S. Forge Trade Agreement Amidst Tensions

Tue, 22 Jul 2025 18:16:57 GMT
Mon, 21 Jul 2025 19:53:57 GMT

**China Launches Construction of Controversial Giant Dam Amid Regional Tensions**

Mon, 21 Jul 2025 19:53:57 GMT
Mon, 21 Jul 2025 10:32:41 GMT

**China Launches Construction on Ambitious Largest Hydropower Dam, Sparking Regional Tensions**

Mon, 21 Jul 2025 10:32:41 GMT
Mon, 21 Jul 2025 10:30:10 GMT

Lead Poisoning Cover-Up Revealed in Western China

Mon, 21 Jul 2025 10:30:10 GMT
Mon, 21 Jul 2025 04:27:42 GMT

China Tightens its Grip: A Diplomatic Standoff with Europe Amidst Trade Tensions

Mon, 21 Jul 2025 04:27:42 GMT
Sun, 20 Jul 2025 11:45:40 GMT

China's Exit Policy Raises Red Flags for International Businesses

Sun, 20 Jul 2025 11:45:40 GMT
Sun, 20 Jul 2025 09:03:31 GMT

Trump’s Shift in Strategy: Embracing Cooperation with China on Tech Trade**

Sun, 20 Jul 2025 09:03:31 GMT
Sat, 19 Jul 2025 04:04:43 GMT

**Defiance in Architecture: The Remarkable Tower of Chen Tianming**

Sat, 19 Jul 2025 04:04:43 GMT
Sat, 19 Jul 2025 04:03:29 GMT

**Japan's Political Landscape at a Crossroads: Key Insights Ahead of the Upper House Elections**

Sat, 19 Jul 2025 04:03:29 GMT
Thu, 17 Jul 2025 12:33:03 GMT

**Taipei Conducts Extensive Drill Amid Rising Tensions with China**

Thu, 17 Jul 2025 12:33:03 GMT
Thu, 17 Jul 2025 06:39:14 GMT

Guardians of the Galaxy: Inside the U.S. Space Force's Missile Defense Operations**

Thu, 17 Jul 2025 06:39:14 GMT
Thu, 17 Jul 2025 04:16:16 GMT

China's Naval Ambitions: Expanding Military Reach in the Pacific

Thu, 17 Jul 2025 04:16:16 GMT
Wed, 16 Jul 2025 19:36:29 GMT

**Canada's Bold Move to Protect Steel Industry Amid U.S. Tariffs**

Wed, 16 Jul 2025 19:36:29 GMT
Wed, 16 Jul 2025 17:57:52 GMT

Guardians of the Galaxy: Inside the U.S. Space Force's Missile Defense Operations**

Wed, 16 Jul 2025 17:57:52 GMT
Wed, 16 Jul 2025 07:37:20 GMT

Trump Initiates Comprehensive Investigation into Brazil's Trade Practices

Wed, 16 Jul 2025 07:37:20 GMT
Wed, 16 Jul 2025 04:39:07 GMT

China's Economic Resilience Amid Tariff Challenges

Wed, 16 Jul 2025 04:39:07 GMT
Tue, 15 Jul 2025 21:30:25 GMT

Mike Waltz Faces Scrutiny Over Signal Leak During UN Ambassador Hearing

Tue, 15 Jul 2025 21:30:25 GMT
Tue, 15 Jul 2025 21:28:19 GMT

**China's Economy Thrives Amid Trump Tariffs with Global Investment Surge**

Tue, 15 Jul 2025 21:28:19 GMT
Tue, 15 Jul 2025 15:07:06 GMT

China Enforces New Export Controls on Electric Vehicle Battery Technology

Tue, 15 Jul 2025 15:07:06 GMT
Tue, 15 Jul 2025 10:19:09 GMT

China's Economy Surprises with Resilience Amid Tariff Tensions

Tue, 15 Jul 2025 10:19:09 GMT

Follow us

© 2024 SwissX REDD UK ltd. All Rights Reserved.