Security News > 2021 > July > US and allies finger China in Microsoft Exchange hack

The US has also blamed hackers working with China for ransomware attacks, extortion, crypto-jacking and other cybercrimes.
The United States and several allies have officially pointed the finger at China for the recent hack of Microsoft Exchange server as well as an ongoing series of cyberattacks carried out by contract hackers for personal profit.
To start, the U.S. laid the blame on China's doorstep for the recent hack of Microsoft Exchange server.
At the time, Microsoft and others attributed the Exchange server hack to a China-based group named Hafnium, which Microsoft said conducts its operations mostly from leased virtual private servers in the U.S. But this marks the first time the U.S. government has officially called out China as responsible for these attacks.
The impact of the charges against China ring even stronger as they're coming not just from the U.S. Marking the first time it has criticized the PRC's cybercriminal activity, NATO issued a statement on Monday joining the U.S. and others in attributing responsibility for the Exchange server compromise to the People's Republic of China.
In its own statement, the U.K. agreed that China was responsible for the Exchange hack, adding that it also has blamed China's MSS as behind such cyberthreat groups as AP31 and APT40.
News URL
Related news
- A PostgreSQL zero-day was also exploited in US Treasury hack (CVE-2025-1094) (source)
- Microsoft's End of Support for Exchange 2016 and 2019: What IT Teams Must Do Now (source)
- Week in review: PostgreSQL 0-day exploited in US Treasury hack, top OSINT books to learn from (source)
- Microsoft unveils finalized EU Data Boundary as European doubt over US grows (source)
- China's Silk Typhoon, tied to US Treasury break-in, now hammers IT and govt targets (source)
- Feds name and charge alleged Silk Typhoon spies behind years of China-on-US attacks (source)
- US seizes domain of Garantex crypto exchange used by ransomware gangs (source)
- Microsoft Exchange Online outage affects Outlook web users (source)
- Microsoft: Exchange Online bug mistakenly quarantines user emails (source)
- China’s FamousSparrow flies back into action, breaches US org after years off the radar (source)