Close Menu
  • Home
  • Aerospace & Defense
    • Automation & Process Control
      • Automotive & Transportation
  • Banking & Finance
    • Chemicals & Materials
    • Consumer Goods & Services
  • Economy
    • Electronics & Semiconductor
  • Energy & Resources
    • Food & Beverage
    • Hospitality & Tourism
    • Information Technology
  • Agriculture
What's Hot

KUKA introduces the trends in automated machine tools at CMTS 2025

Apple warned Iranians against iPhone spyware attacks, researchers say

Ukrainian protesters condemn laws that curb anti-corruption agencies | Corruption News

Facebook X (Twitter) Instagram
USA Business Watch – Insightful News on Economy, Finance, Politics & Industry
  • Home
  • Aerospace & Defense
    • Automation & Process Control
      • Automotive & Transportation
  • Banking & Finance
    • Chemicals & Materials
    • Consumer Goods & Services
  • Economy
    • Electronics & Semiconductor
  • Energy & Resources
    • Food & Beverage
    • Hospitality & Tourism
    • Information Technology
  • Agriculture
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
USA Business Watch – Insightful News on Economy, Finance, Politics & Industry
Home » Google and Microsoft say Chinese hackers are using SharePoint Zero-Day
Information Technology

Google and Microsoft say Chinese hackers are using SharePoint Zero-Day

ThefuturedatainsightsBy ThefuturedatainsightsJuly 22, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


Security researchers from Google and Microsoft say there is evidence that China-backed hackers are taking advantage of zero-day bugs in Microsoft SharePoint as businesses around the world are in a hurry to patch their flaws.

Officially known as CVE-2025-53770, a bug discovered last weekend allows hackers to steal sensitive private keys from self-hosted versions of SharePoint, a software server widely used by businesses and organizations to store and share internal documents. Once exploited, attackers can use bugs to remotely plant malware, access files and data stored inside, and access other systems on the same network.

In a blog post Tuesday, Microsoft said it had observed that at least two previously identified China-supported hacking groups would use SharePoint Zero Days, called “linen typhoons” and “violet typhoons.” Microsoft says that linen typhoons are focused on theft of intellectual property, while violet typhoons are stealing the personal information used for espionage.

Microsoft also attributes the ongoing hacking to a third China-backed hacking group named “Storm-2603”, representing a hacking group with little information about the company. However, the company noted that hackers have been linked to ransomware attacks in the past.

According to Microsoft, three hacking groups have been observed to exploit the zero-day vulnerability to infiltrate vulnerable SharePoint servers until July 7th.

Charles Carmakal, chief technology officer of Google’s incident response unit Mandiant, told TechCrunch in an email that “at least one of the people in charge” is a China-Nexus hacking group, but said “several actors are actively exploiting this vulnerability.”

Dozens of organizations have already been hacked, including the entire government sector. The bug was considered zero day because the vendor (in this case Microsoft) didn’t have time to issue patches before it was actively exploited. Microsoft has since deployed patches for all affected versions of SharePoint, but security researchers warn that customers running a self-hosted version of SharePoint should already assume they have compromised.

TechCrunch Events

San Francisco
|
October 27th-29th, 2025

A spokesman for the Chinese Embassy in Washington, DC did not immediately return a request for comment. The Chinese government has long rejected allegations that it had carried out a cyberattack, but it has not always explicitly denied its involvement.

This is the latest hacking campaign linked to China in recent years. The China-backed hacker was accused of targeting a self-hosted Microsoft Exchange mail server in 2021 as part of a mass hacking campaign. According to a recent Justice Department indictment, Chinese hackers accused two hackers of masterminding the violation, and so-called “hafnium” hacking has breached contact information and private mailboxes from over 60,000 affected servers.



Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleHow Mills, PepsiCo and others are taking advantage of trends
Next Article See real-time how AI is restructuring its work
Thefuturedatainsights
  • Website

Related Posts

Apple warned Iranians against iPhone spyware attacks, researchers say

July 23, 2025

VSCO’s iPhone Camera App is now available globally

July 22, 2025

The 21-year-old MIT Dropout raises $32 million at a $300 million valuation led by Insight

July 22, 2025
Leave A Reply Cancel Reply

Latest Posts

Dairy Entrepreneurs Return to Shape the Future of British Dairy Products

Returning to British Vegetables or Derailed NHS Health Plans, Growers Warn

Welsh farmers urged plastics to be removed as new recycling tests begin

NFU warns that inheritance tax will break the backbone of UK agriculture

Latest Posts

Fund Managers conclude their position in Europe’s defense

July 21, 2025

10 Things to Do on the Right Path for Stocks as Another Tariff Deadline approaches

July 21, 2025

Why Delta and United are pulling away from airline packs

July 18, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • KUKA introduces the trends in automated machine tools at CMTS 2025
  • Apple warned Iranians against iPhone spyware attacks, researchers say
  • Ukrainian protesters condemn laws that curb anti-corruption agencies | Corruption News
  • Semi-world total semiconductor equipment sales forecast will reach $125.5 billion in 2025
  • EQT beats quarter profit estimates with rising NATGAS prices, sales volume – energy news, top headlines, commentary, features and events

Recent Comments

No comments to show.

Welcome to USA Business Watch – your trusted source for real-time insights, in-depth analysis, and industry trends across the American and global business landscape.

At USABusinessWatch.com, we aim to inform decision-makers, professionals, entrepreneurs, and curious minds with credible news and expert commentary across key sectors that shape the economy and society.

Facebook X (Twitter) Instagram Pinterest YouTube

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Archives

  • July 2025
  • June 2025
  • March 2022
  • January 2021

Categories

  • Aerospace & Defense
  • Agriculture
  • Automation & Process Control
  • Automotive & Transportation
  • Banking & Finance
  • Chemicals & Materials
  • Consumer Goods & Services
  • Economy
  • Economy
  • Electronics & Semiconductor
  • Energy & Resources
  • Food & Beverage
  • Hospitality & Tourism
  • Information Technology
  • Political
Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2025 usabusinesswatch. Designed by usabusinesswatch.

Type above and press Enter to search. Press Esc to cancel.