Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • PM Modi in Manipur
  • Charlie Kirk killer
  • Sushila Karki
  • IND vs PAK
  • India-US ties
  • New human organ
  • Downton Abbey: The Grand Finale Movie Review
fp-logo
Chinese hackers exploiting SharePoint flaws to steal data, deploy malware, says Microsoft
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Tech
  • Chinese hackers exploiting SharePoint flaws to steal data, deploy malware, says Microsoft

Chinese hackers exploiting SharePoint flaws to steal data, deploy malware, says Microsoft

FP Tech Desk • July 23, 2025, 02:22:47 IST
Whatsapp Facebook Twitter

Microsoft said it had identified three threat groups, Linen Typhoon, Violet Typhoon, and Storm-2603, that have been targeting internet-facing SharePoint servers since at least July 7

Advertisement
Subscribe Join Us
Add as a preferred source on Google
Prefer
Firstpost
On
Google
Chinese hackers exploiting SharePoint flaws to steal data, deploy malware, says Microsoft
File Image

Chinese state-sponsored hackers are actively exploiting two critical vulnerabilities in Microsoft SharePoint servers to steal sensitive data and gain backdoor access to enterprise networks, the tech giant warned on Tuesday.

Microsoft said it had identified three threat groups, Linen Typhoon, Violet Typhoon, and Storm-2603, that have been targeting internet-facing SharePoint servers since at least July 7, exploiting flaws that allow authentication bypass and remote code execution.

Only on-premises SharePoint installations are affected by the campaign; Microsoft’s cloud-based SharePoint Online remains unaffected. The company has issued security patches and urged customers to apply them immediately to prevent further intrusions.

STORY CONTINUES BELOW THIS AD

What are the hackers doing?

Once inside a system, the attackers deploy malicious code that grants them backdoor access and lets them steal machine encryption keys. These tools allow persistent access and control over the compromised networks, Microsoft said in its security bulletin.

Cybersecurity firm Check Point confirmed the same campaign had intensified after July 18, with multiple compromise attempts against government and private organisations in North America and Western Europe.

More from Tech
Did China-linked hackers access US nuclear secrets through Microsoft? Did China-linked hackers access US nuclear secrets through Microsoft? What the flush? Microsoft wants to buy human waste. Here’s why What the flush? Microsoft wants to buy human waste. Here’s why

Who are the threat actors?

  • Linen Typhoon (active since 2012): targets governments, defence entities, and human rights groups to steal intellectual property.

  • Violet Typhoon (since 2015): spies on NGOs, media organisations, think tanks, and former officials in the US, Europe, and East Asia.

  • Storm-2603: suspected to be China-based, has used ransomware in the past but current motives remain unclear.

The vulnerabilities exploited in this campaign allow attackers to spoof credentials and run arbitrary code remotely, making them particularly dangerous for high-value targets.

Microsoft and Check Point have both advised organisations using SharePoint Server to urgently review their exposure and apply the necessary mitigations.

Tags
Microsoft
End of Article
Latest News
Find us on YouTube
Subscribe
End of Article

Impact Shorts

America ready for self-driving cars, but it has a legal problem

America ready for self-driving cars, but it has a legal problem

US self-driving cars may soon ditch windshield wipers as the NHTSA plans to update regulations by 2026. State-level rules vary, complicating nationwide deployment. Liability and insurance models are also evolving with the technology.

More Impact Shorts

Top Stories

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV