Security News > 2021 > July > U.S., Allies Officially Accuse China of Microsoft Exchange Attacks

The United States and its allies have officially attributed the Microsoft Exchange server attacks disclosed in early March to hackers affiliated with the Chinese government.
In a statement, the White House accused China of using "Criminal contract hackers" to conduct cyber operations.
The White House has also attributed - "With a high degree of confidence" - the initial Microsoft Exchange attacks to hackers affiliated with China's Ministry of State Security.
Multiple threat groups have exploited the Microsoft Exchange vulnerabilities disclosed in early March.
The NSA, FBI and the DHS's Cybersecurity and Infrastructure Security Agency on Monday released an advisory detailing more than 50 tactics, techniques and procedures used by Chinese state-sponsored threat actors in their attacks.
Over the past years, the U.S. has charged several individuals over their alleged role in hacking operations conducted by the Chinese government, including attacks aimed at COVID-19 vaccine makers and the credit reporting agency Equifax.
News URL
Related news
- US indicts Black Kingdom ransomware admin for Microsoft Exchange attacks (source)
- Microsoft Warns of Tax-Themed Email Attacks Using PDFs and QR Codes to Deliver Malware (source)
- Microsoft investigates global Exchange Admin Center outage (source)
- Infosec experts fear China could retaliate against tariffs with a Typhoon attack (source)
- Microsoft Defender will isolate undiscovered endpoints to block attacks (source)
- Microsoft: Exchange 2016 and 2019 reach end of support in six months (source)
- China names alleged US snoops over Asian Winter Games attacks (source)
- China is using AI to sharpen every link in its attack chain, FBI warns (source)
- Microsoft fixes Exchange Online bug flagging Gmail emails as spam (source)