• Home
  • Events Calendar
  • Blueprint Guidelines
  • Privacy Policy
  • Subscribe to Daily Newsletter
  • NextGenInfra.io
No Result
View All Result
Converge Digest
Friday, April 17, 2026
  • Home
  • Events Calendar
  • Blueprint Guidelines
  • Privacy Policy
  • Subscribe to Daily Newsletter
  • NextGenInfra.io
No Result
View All Result
Converge Digest
No Result
View All Result

Home » Microsoft Exchange hit by state-sponsored hackers from China

Microsoft Exchange hit by state-sponsored hackers from China

March 7, 2021
in All
A A

Microsoft warned enterprises using its on-premises Exchange Server platforms of multiple 0-day exploits being used in limited and targeted attacks. The exploit does not affect Microsoft 365 or Azure Cloud deployments.

Microsoft Threat Intelligence Center (MSTIC) attributes this campaign with high confidence to HAFNIUM, a group assessed to be state-sponsored and operating out of China, based on observed victimology, tactics and procedures. HAFNIUM, which primarily targets entities in the United States across a number of industry sectors,  exfiltrates data to file sharing sites like MEGA. The group is believed to use leased virtual private servers (VPS) in the United States to launch their attacks

In the attacks observed, HAFNIUM used the newly discovered vulnerabilities to access on-premises Exchange servers which enabled access to email accounts, and allowed installation of additional malware to facilitate long-term access to victim environments. 

According to media reports, the attack potentially compromised up to 30,000 organizations.

Microsoft has released out-of-band security updates to address four vulnerabilities in Exchange Server. In addition, Microsoft has released alternative mitigation techniques for Exchange Server customers who are not able to immediately apply updates that address vulnerabilities.

Separately, the U.S. Cybersecurity and Infrastructure Security Agency issued a directive requiring federal civilian departments and agencies running Microsoft Exchange on-premises products to update or disconnect the products from their networks.

In addition, the European Banking Authority confirmed that it was compromised by the attack, and that as a precautionary measure, the EBA has decided to take its email systems offline.

https://www.microsoft.com/security/blog/2021/03/02/hafnium-targeting-exchange-servers/

Tags: Blueprint columnsChinaMicrosoftSecurity
ShareTweetShare
Previous Post

SEC charges AT&T with disclosing insider information

Next Post

Microsoft previews AI-driven Azure modules

Staff

Staff

Related Posts

Microsoft Details Network, Silicon and Data Center Architecture
AI Infrastructure

Microsoft Details Network, Silicon and Data Center Architecture

November 20, 2025
Microsoft Links Wisconsin + Atlanta Data Centers to Create Distributed AI Superfactory
All

Microsoft Links Wisconsin + Atlanta Data Centers to Create Distributed AI Superfactory

November 12, 2025
Lambda to Build 100MW Data Center in Kansas City 
AI Infrastructure

Lambda and Microsoft Sign Multibillion-Dollar Deal

November 3, 2025
Meta selects Azure as strategic cloud provider for AI research
Financials

Microsoft Cloud and AI Momentum Drive Results, CAPEX Rockets Up

October 29, 2025
OpenAI Completes Recapitalization, Microsoft Expands Partnership
AI Infrastructure

OpenAI Completes Recapitalization, Microsoft Expands Partnership

October 28, 2025
PECC Summit: NVIDIA’s Ashkan Seyedi on AI Networking
All

PECC: Microsoft’s Ram Huggahalli on the Next Phase of AI-Scale Optics

October 23, 2025
Next Post
Microsoft previews AI-driven Azure modules

Microsoft previews AI-driven Azure modules

Please login to join discussion

Categories

  • 5G / 6G / Wi-Fi
  • AI Infrastructure
  • All
  • Automotive Networking
  • Blueprints
  • Clouds and Carriers
  • Data Centers
  • Enterprise
  • Explainer
  • Feature
  • Financials
  • Last Mile / Middle Mile
  • Legal / Regulatory
  • Optical
  • Quantum
  • Research
  • Security
  • Semiconductors
  • Space
  • Start-ups
  • Subsea
  • Sustainability
  • Video
  • Webinars

Archives

Tags

5G All AT&T Australia AWS Blueprint columns BroadbandWireless Broadcom China Ciena Cisco Data Centers Dell'Oro Ericsson FCC Financial Financials Huawei Infinera Intel Japan Juniper Last Mile Last Mille LTE Mergers and Acquisitions Mobile NFV Nokia Optical Packet Systems PacketVoice People Regulatory Satellite SDN Service Providers Silicon Silicon Valley StandardsWatch Storage TTP UK Verizon Wi-Fi
Converge Digest

A private dossier for networking and telecoms

Follow Us

  • Home
  • Events Calendar
  • Blueprint Guidelines
  • Privacy Policy
  • Subscribe to Daily Newsletter
  • NextGenInfra.io

© 2025 Converge Digest - A private dossier for networking and telecoms.

No Result
View All Result
  • Home
  • Events Calendar
  • Blueprint Guidelines
  • Privacy Policy
  • Subscribe to Daily Newsletter
  • NextGenInfra.io

© 2025 Converge Digest - A private dossier for networking and telecoms.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Go to mobile version