{"id":399603,"date":"2025-07-24T19:02:28","date_gmt":"2025-07-24T13:32:28","guid":{"rendered":"https:\/\/dripp.zone\/news\/microsoft-confirms-chinese-cyber-groups-behind-major-sharepoint-exploit-us-agencies-and-global-companies-among-affected-crypto-news\/"},"modified":"2025-07-24T19:53:06","modified_gmt":"2025-07-24T14:23:06","slug":"microsoft-confirms-chinese-cyber-groups-behind-major-sharepoint-exploit-us-agencies-and-global-companies-among-affected-crypto-news","status":"publish","type":"post","link":"https:\/\/dripp.zone\/news\/microsoft-confirms-chinese-cyber-groups-behind-major-sharepoint-exploit-us-agencies-and-global-companies-among-affected-crypto-news\/","title":{"rendered":"Microsoft confirms Chinese cyber groups behind major SharePoint exploit; US agencies and global companies among affected &#8211; Crypto News"},"content":{"rendered":"<p><\/p>\n<div id=\"article-index-0\">\n<p>Three China-linked cyber espionage groups have been implicated in a major hacking campaign that has compromised a wide range of organisations globally, including multiple US government agencies. The cyberattack, which exploits critical vulnerabilities in Microsoft\u2019s widely used SharePoint server software, has prompted urgent investigations by federal officials and private security experts, according to a report by <i>Politico<\/i>.<\/p>\n<\/div>\n<div id=\"article-index-1\">\n<p><a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/technology\/tech-news\/microsoft-issues-urgent-patch-as-sharepoint-exploit-spreads-globally-how-to-stay-safe-online-11753109693873.html\" data-vars-page-type=\"story\" data-vars-link-type=\"Manual\" data-vars-anchor-text=\"Microsoft\">Microsoft<\/a> confirmed in a recent blog post that the three threat actors, identified as Violet Typhoon, Linen Typhoon, and Storm-2603, are actively involved in the campaign. These groups are believed to be state-affiliated and have been previously associated with cyber operations targeting Western interests.<\/p>\n<\/div>\n<div id=\"article-index-2\">\n<p>Two US officials, speaking on condition of anonymity due to the sensitivity of the situation, disclosed that at least four to <a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/companies\/news\/microsoft-hack-hits-hundreds-of-firms-agencies-as-damage-spreads-11753320736019.html\" data-vars-page-type=\"story\" data-vars-link-type=\"Manual\" data-vars-anchor-text=\"five federal agencies\">five federal agencies<\/a> have been affected, though the full scale of the breach remains unclear. \u201cMore than one\u201d agency had been confirmed as compromised as of Monday, one of the officials added.<\/p>\n<\/div>\n<div id=\"article-index-3\">\n<p>The attackers are exploiting a serious flaw in customer-managed, on-premises versions of Microsoft SharePoint, a collaborative platform used extensively across government and corporate sectors. Microsoft stated that the <a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/market\/market-stats\/stocks-varanium-cloud-share-price-nse-bse-s0005315\" data-vars-anchor-text=\"cloud\" data-vars-link-type=\"Auto\" data-vars-page-type=\"story\">cloud<\/a>-hosted versions of SharePoint are not impacted by the vulnerability.<\/p>\n<\/div>\n<div id=\"article-index-4\">\n<p>Since the breach was detected over the weekend, both federal cybersecurity teams and private analysts have been working to contain the damage. Microsoft said it is confident the threat actors will continue to exploit unpatched systems, warning of the urgent need for organisations to update their software.<\/p>\n<\/div>\n<div id=\"article-index-6\">\n<p>The <a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/market\/market-stats\/stocks-aditya-birla-sun-life-nifty-it-etf-share-price-nse-bse-e00223\" data-vars-anchor-text=\"tech\" data-vars-link-type=\"Auto\" data-vars-page-type=\"story\">tech<\/a> giant has said it is working closely with the US Cybersecurity and Infrastructure Security Agency (CISA), the Department of Defense\u2019s Cyber Defence Command, and international cybersecurity partners to mitigate the threat. A CISA spokesperson noted that Microsoft had been \u201cresponding quickly\u201d since the agency first raised the alarm.<\/p>\n<\/div>\n<div id=\"article-index-7\">\n<p>This latest breach adds to a growing list of high-profile cybersecurity incidents involving Microsoft and suspected <a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/technology\/tech-news\/microsoft-server-hack-likely-single-actor-thousands-of-firms-now-vulnerable-researchers-say-11753104197445.html\" data-vars-page-type=\"story\" data-vars-link-type=\"Manual\" data-vars-anchor-text=\"Chinese hackers\">Chinese hackers<\/a>. In 2023, attackers linked to China reportedly accessed email accounts belonging to the US ambassador to China and the US Commerce Secretary by exploiting a string of Microsoft security flaws, shortcomings that were later criticised by a federal review board.<\/p>\n<\/div>\n<div id=\"article-index-8\">\n<p>More recently, the <a rel=\"nofollow\" target=\"_blank\" class=\"backlink\" target=\"_blank\" href=\"https:\/\/www.livemint.com\/market\/market-stats\/stocks-pentagon-rubber-share-price-nse-bse-s0005484\" data-vars-anchor-text=\"Pentagon\" data-vars-link-type=\"Auto\" data-vars-page-type=\"story\">Pentagon<\/a> announced it would reassess all its cloud services after it emerged that Chinese-based engineers had been providing technical assistance for sensitive US military systems.<\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Three China-linked cyber espionage groups have been implicated in a major hacking campaign that has compromised a wide range of organisations globally, including multiple US government agencies. The cyberattack, which exploits critical vulnerabilities in Microsoft\u2019s widely used SharePoint server software, has prompted urgent investigations by federal officials and private security experts, according to a report [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":399609,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[188,183,8535,185,186,4737,39001,38999,187,39000,184,189,150,182,190],"class_list":["post-399603","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology","tag-blockchain-tech","tag-blockchain-technology","tag-chinese-hackers","tag-crypto-technology","tag-cryptocurrency-technology","tag-cyber-espionage","tag-federal-agencies","tag-hacking-campaign","tag-metaverse-technology","tag-microsoft-sharepoint","tag-nft-technology","tag-soul-bound-token","tag-tech","tag-technology","tag-token-technology"],"_links":{"self":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/399603","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/comments?post=399603"}],"version-history":[{"count":1,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/399603\/revisions"}],"predecessor-version":[{"id":399610,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/399603\/revisions\/399610"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media\/399609"}],"wp:attachment":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media?parent=399603"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/categories?post=399603"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/tags?post=399603"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}