Close Menu
  • Home
  • Aerospace & Defense
    • Automation & Process Control
      • Automotive & Transportation
  • Banking & Finance
    • Chemicals & Materials
    • Consumer Goods & Services
  • Economy
    • Electronics & Semiconductor
  • Energy & Resources
    • Food & Beverage
    • Hospitality & Tourism
    • Information Technology
  • Agriculture
What's Hot

Scientists use tobacco inhalation to design sustainable and resistant asphalt

Hundreds of organizations that violated SharePoint Mass-Hacks

Home sales in June drop when prices hit record highs

Facebook X (Twitter) Instagram
USA Business Watch – Insightful News on Economy, Finance, Politics & Industry
  • Home
  • Aerospace & Defense
    • Automation & Process Control
      • Automotive & Transportation
  • Banking & Finance
    • Chemicals & Materials
    • Consumer Goods & Services
  • Economy
    • Electronics & Semiconductor
  • Energy & Resources
    • Food & Beverage
    • Hospitality & Tourism
    • Information Technology
  • Agriculture
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
USA Business Watch – Insightful News on Economy, Finance, Politics & Industry
Home » Google and Microsoft say Chinese hackers are using SharePoint Zero-Day
Information Technology

Google and Microsoft say Chinese hackers are using SharePoint Zero-Day

ThefuturedatainsightsBy ThefuturedatainsightsJuly 22, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


Security researchers from Google and Microsoft say there is evidence that China-backed hackers are taking advantage of zero-day bugs in Microsoft SharePoint as businesses around the world are in a hurry to patch their flaws.

Officially known as CVE-2025-53770, a bug discovered last weekend allows hackers to steal sensitive private keys from self-hosted versions of SharePoint, a software server widely used by businesses and organizations to store and share internal documents. Once exploited, attackers can use bugs to remotely plant malware, access files and data stored inside, and access other systems on the same network.

In a blog post Tuesday, Microsoft said it had observed that at least two previously identified China-supported hacking groups would use SharePoint Zero Days, called “linen typhoons” and “violet typhoons.” Microsoft says that linen typhoons are focused on theft of intellectual property, while violet typhoons are stealing the personal information used for espionage.

Microsoft also attributes the ongoing hacking to a third China-backed hacking group named “Storm-2603”, representing a hacking group with little information about the company. However, the company noted that hackers have been linked to ransomware attacks in the past.

According to Microsoft, three hacking groups have been observed to exploit the zero-day vulnerability to infiltrate vulnerable SharePoint servers until July 7th.

Charles Carmakal, chief technology officer of Google’s incident response unit Mandiant, told TechCrunch in an email that “at least one of the people in charge” is a China-Nexus hacking group, but said “several actors are actively exploiting this vulnerability.”

Dozens of organizations have already been hacked, including the entire government sector. The bug was considered zero day because the vendor (in this case Microsoft) didn’t have time to issue patches before it was actively exploited. Microsoft has since deployed patches for all affected versions of SharePoint, but security researchers warn that customers running a self-hosted version of SharePoint should already assume they have compromised.

TechCrunch Events

San Francisco
|
October 27th-29th, 2025

A spokesman for the Chinese Embassy in Washington, DC did not immediately return a request for comment. The Chinese government has long rejected allegations that it had carried out a cyberattack, but it has not always explicitly denied its involvement.

This is the latest hacking campaign linked to China in recent years. The China-backed hacker was accused of targeting a self-hosted Microsoft Exchange mail server in 2021 as part of a mass hacking campaign. According to a recent Justice Department indictment, Chinese hackers accused two hackers of masterminding the violation, and so-called “hafnium” hacking has breached contact information and private mailboxes from over 60,000 affected servers.



Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleHow Mills, PepsiCo and others are taking advantage of trends
Next Article See real-time how AI is restructuring its work
Thefuturedatainsights
  • Website

Related Posts

Hundreds of organizations that violated SharePoint Mass-Hacks

July 23, 2025

Trump is set to unveil his AI roadmap: What does this know?

July 23, 2025

Amazon gets Bee, an AI wearable that records everything you say

July 23, 2025
Leave A Reply Cancel Reply

Latest Posts

Only one of the four reported waste crimes – more than half of farmers still attacked

Welsh government resumes support for organic farming under SFS

Warns business groups that will cause a collapse in rural investment in tax reform

Extreme weather threatens half of British fruit and vegetable imports by 2050

Latest Posts

Fund Managers conclude their position in Europe’s defense

July 21, 2025

10 Things to Do on the Right Path for Stocks as Another Tariff Deadline approaches

July 21, 2025

Why Delta and United are pulling away from airline packs

July 18, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • Scientists use tobacco inhalation to design sustainable and resistant asphalt
  • Hundreds of organizations that violated SharePoint Mass-Hacks
  • Home sales in June drop when prices hit record highs
  • Trump is set to unveil his AI roadmap: What does this know?
  • Uber finally matches female riders in the US with female drivers

Recent Comments

No comments to show.

Welcome to USA Business Watch – your trusted source for real-time insights, in-depth analysis, and industry trends across the American and global business landscape.

At USABusinessWatch.com, we aim to inform decision-makers, professionals, entrepreneurs, and curious minds with credible news and expert commentary across key sectors that shape the economy and society.

Facebook X (Twitter) Instagram Pinterest YouTube

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Archives

  • July 2025
  • June 2025
  • March 2022
  • January 2021

Categories

  • Aerospace & Defense
  • Agriculture
  • Automation & Process Control
  • Automotive & Transportation
  • Banking & Finance
  • Chemicals & Materials
  • Consumer Goods & Services
  • Economy
  • Economy
  • Electronics & Semiconductor
  • Energy & Resources
  • Food & Beverage
  • Hospitality & Tourism
  • Information Technology
  • Political
Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2025 usabusinesswatch. Designed by usabusinesswatch.

Type above and press Enter to search. Press Esc to cancel.