China-based government hackers have exploited a bug in Microsoft Corp’s e-mail server software to target US organizations, the company said on Tuesday.
Microsoft said that a “highly skilled and sophisticated” state-sponsored group operating from China has been trying to steal information from a number of targets in the US, including universities, defense contractors, law firms and infectious-disease researchers.
Microsoft has released security upgrades to fix the vulnerabilities to its Exchange Server software, which is used for work e-mail and calendar services, mostly for larger organizations that have their own in-person e-mail servers, the company said.
Photo: Swayne B. Hall, AP
It does not affect personal e-mail accounts or Microsoft’s cloud-based services, it added.
The hacking group it calls Hafnium was able to trick Exchange servers into allowing it to gain access, Microsoft said.
The hackers then masqueraded as someone who should have access and created a way to control the server remotely so that they could steal data from an organization’s network, it added.
Microsoft said that the group is based in China, but operates from leased virtual private servers in the US, which helps it avoid detection.
The company declined to name any specific targets or say how many organizations were affected.
Reston, Virginia-based cybersecurity company Volexity Government Solutions LLC, which Microsoft credits for helping to detect the intrusions, said that its network security monitoring service began investigating a suspiciously large data transfer in late January.
“They’re just downloading e-mail, literally going to town,” Volexity president Steven Adair said, adding that the targets included defense contractors, think tanks, non-governmental organizations, and international aid and development organizations.
Adair said that he is concerned that the hackers might accelerate their activity in the coming days before organizations are able to install Microsoft’s security upgrades.
“As bad as it is now, I think it’s about to get a lot worse,” he said. “This gives them a limited amount of opportunity to go and exploit something. The patch isn’t going to fix that if they left their backdoor behind.”
Anna Bhobho, a 31-year-old housewife from rural Zimbabwe, was once a silent observer in her home, excluded from financial and family decisionmaking in the deeply patriarchal society. Today, she is a driver of change in her village, thanks to an electric tricycle she owns. In many parts of rural sub-Saharan Africa, women have long been excluded from mainstream economic activities such as operating public transportation. However, three-wheelers powered by green energy are reversing that trend, offering financial opportunities and a newfound sense of importance. “My husband now looks up to me to take care of a large chunk of expenses,
SECTOR LEADER: TSMC can increase capacity by as much as 20 percent or more in the advanced node part of the foundry market by 2030, an analyst said Taiwan Semiconductor Manufacturing Co (TSMC, 台積電) is expected to lead its peers in the advanced 2-nanometer process technology, despite competition from Samsung Electronics Co and Intel Corp, TrendForce Corp analyst Joanne Chiao (喬安) said. TSMC’s sophisticated products and its large production scale are expected to allow the company to continue dominating the global 2-nanometer process market this year, Chiao said. The world’s largest contract chipmaker is scheduled to begin mass production of chips made on the 2-nanometer process in its Hsinchu fab in the second half of this year. It would also hold a ceremony on Monday next week to
TECH CLUSTER: The US company’s new office is in the Shalun Smart Green Energy Science City, a new AI industry base and cybersecurity hub in southern Taiwan US chip designer Advanced Micro Devices Inc (AMD) yesterday launched an office in Tainan’s Gueiren District (歸仁), marking a significant milestone in the development of southern Taiwan’s artificial intelligence (AI) industry, the Tainan City Government said in a statement. AMD Taiwan general manager Vincent Chern (陳民皓) presided over the opening ceremony for the company’s new office at the Shalun Smart Green Energy Science City (沙崙智慧綠能科學城), a new AI industry base and cybersecurity hub in southern Taiwan. Facilities in the new office include an information processing center, and a research and development (R&D) center, the Tainan Economic Development Bureau said. The Ministry
ADVERSARIES: The new list includes 11 entities in China and one in Taiwan, which is a local branch of Chinese cloud computing firm Inspur Group The US added dozens of entities to a trade blacklist on Tuesday, the US Department of Commerce said, in part to disrupt Beijing’s artificial intelligence (AI) and advanced computing capabilities. The action affects 80 entities from countries including China, the United Arab Emirates and Iran, with the commerce department citing their “activities contrary to US national security and foreign policy.” Those added to the “entity list” are restricted from obtaining US items and technologies without government authorization. “We will not allow adversaries to exploit American technology to bolster their own militaries and threaten American lives,” US Secretary of Commerce Howard Lutnick said. The entities