Friday, May 9, 2025
HomeCyber Security NewsChinese Hackers Were Responsible For The Massive Microsoft Exchange Server Attacks -...

Chinese Hackers Were Responsible For The Massive Microsoft Exchange Server Attacks – NCSC, UK

Published on

SIEM as a Service

Follow Us on Google News

A new research report by the UK, NCSC with Alias, revealed that the Chinese hackers were merely responsible for the massive cyberattack on computer networks around the globe by exploiting Microsoft Exchange Server vulnerabilities.

The chinse-State-sponsored hacking group known as HAFNIUM was reportedly responsible for this massive attack that took place earlier this year.

HAFNIUM is an APT hackers group associated with the Chinese state that is responsible for operating large-scale espionage with the help of sophisticated hacking tools and techniques.

- Advertisement - Google News

The attack caused more than 30,000 companies in the U.S alone, and thousands of organizations were affected worldwide.

Microsoft Exchange Server Vulnerability

During this large scale of ongoing attack, The vulnerabilities have affected the versions 2013, 2016, and 2019, and bugs are being exploited as part of an attack chain.

Microsoft was detailed all the vulnerabilities and CVE in the blog post that was released in March 2021 through which Microsoft alerted its customers to understand these vulnerabilities, and their exploitation patterns, and shared detailed guidance on how the malicious actors are exploiting these vulnerabilities and targeting customers

There are roughly over a quarter of a million servers that are compromised worldwide and enable large-scale espionage, including acquiring personally identifiable information and intellectual property.

According to “NCSC Director of Operations Paul Chichester” The attack on Microsoft Exchange servers is another serious example of a malicious act by Chinese state-backed actors in cyberspace“.

““This kind of behaviour is completely unacceptable, and alongside our partners, we will not hesitate to call it out when we see it.”

The Chinese government was ignored repeated calls to end its reckless campaign and continuously targeting through its state-backed threat actors and won’t respond when it got caught.

“The National Cyber Security Centre (NCSC) issued tailored advice to over 70 affected organizations to enable them successfully to mitigate the effects of the compromise,” NCSC reported.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Azure Storage Utility Vulnerability Allows Privilege Escalation to Root Access

A critical vulnerability discovered by Varonis Threat Labs has exposed users of Microsoft Azure’s...

Critical Vulnerability in Ubiquiti UniFi Protect Camera Allows Remote Code Execution by Attackers

Critical security vulnerabilities in Ubiquiti’s UniFi Protect surveillance ecosystem-one rated the maximum severity score...

IXON VPN Client Vulnerability Allows Privilege Escalation for Attackers

A critical security vulnerability in IXON’s widely used VPN client has exposed Windows, Linux,...

Cisco IOS Software SISF Vulnerability Could Enable Attackers to Launch DoS Attacks

Cisco has released security updates addressing a critical vulnerability in the Switch Integrated Security...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Azure Storage Utility Vulnerability Allows Privilege Escalation to Root Access

A critical vulnerability discovered by Varonis Threat Labs has exposed users of Microsoft Azure’s...

Critical Vulnerability in Ubiquiti UniFi Protect Camera Allows Remote Code Execution by Attackers

Critical security vulnerabilities in Ubiquiti’s UniFi Protect surveillance ecosystem-one rated the maximum severity score...

IXON VPN Client Vulnerability Allows Privilege Escalation for Attackers

A critical security vulnerability in IXON’s widely used VPN client has exposed Windows, Linux,...