Kurse + Charts + Realtime | News + Analysen | Fundamental | Unternehmen | zugeh. Wertpapiere | Aktion | |
---|---|---|---|---|---|---|
Kurs + Chart | Chart (gross) | News + Adhoc | Bilanz/GuV | Termine | Strukturierte Produkte | Portfolio |
Times + Sales | Chartvergleich | Analysen | Schätzungen | Profil | Trading-Depot | Watchlist |
Börsenplätze | Realtime Push | Kursziele | Dividende/GV | |||
Orderbuch | Analysen | |||||
Historisch |
23.07.2025 00:28:56
|
China-Linked Hackers Exploit Critical SharePoint Vulnerability In Widespread Cyberattack
(RTTNews) - Security researchers at Microsoft and Google's Mandiant unit have confirmed that multiple China-backed hacking groups are actively exploiting a severe zero-day vulnerability in self-hosted Microsoft SharePoint servers.
The flaw, discovered last weekend, enables attackers to steal private keys, deploy malware remotely, and gain deep access to sensitive data across corporate networks.
Microsoft has attributed the attacks to three China-linked groups Linen Typhoon, Violet Typhoon, and Storm-2603. Linen Typhoon specializes in intellectual property theft, while Violet Typhoon focuses on espionage. Storm-2603, which remains less understood, has previously been tied to ransomware operations. Evidence shows the vulnerability has been exploited since July 7.
"This is a rapidly evolving situation," said Charles Carmakal, CTO of Mandiant, noting that multiple actors are now using the exploit and more could follow. Preliminary assessments indicate that more than 100 organizations have already been compromised, including U.S. federal agencies and major enterprises worldwide.
Microsoft has released security patches for all affected versions and is coordinating with the Cybersecurity and Infrastructure Security Agency and the Department of Defense to contain the threat. However, experts warn that any organization running on-premises SharePoint should assume potential compromise and perform urgent forensic reviews.
China has denied involvement, reiterating its opposition to all forms of cyberattacks. Still, the campaign echoes the 2021 "Hafnium" Exchange Server breach, highlighting persistent risks from state-sponsored actors.
The incident has renewed scrutiny of Microsoft's on-premises security and the broader resilience of U.S. government and corporate systems.
Nachrichten zu Microsoft Corp.
25.07.25 |
Freundlicher Handel in New York: So bewegt sich der Dow Jones aktuell (finanzen.ch) | |
25.07.25 |
Microsoft Aktie News: Microsoft präsentiert sich am Nachmittag fester (finanzen.ch) | |
24.07.25 |
Verluste in New York: Dow Jones liegt zum Handelsende im Minus (finanzen.ch) | |
24.07.25 |
Börse New York in Rot: Dow Jones liegt im Minus (finanzen.ch) | |
24.07.25 |
Minuszeichen in New York: Dow Jones mittags leichter (finanzen.ch) | |
24.07.25 |
NYSE-Handel Dow Jones verbucht zum Start Abschläge (finanzen.ch) | |
23.07.25 |
Microsoft-Aktie tiefer: China wehrt sich gegen angebliche 'Diffamierung' (AWP) | |
23.07.25 |
Mittwochshandel in New York: Dow Jones legt zum Start des Mittwochshandels zu (finanzen.ch) |