logo
Risk highlighted as Chinese hackers hit Microsoft

Risk highlighted as Chinese hackers hit Microsoft

Mint5 days ago
Software giant Microsoft is at the center of cybersecurity storm after China-linked hackers exploited flaws in SharePoint servers to target hundreds of organizations.
While such cyberattacks are not new, the scale of the onslaught and the speed with which the hackers took advantage of freshly discovered vulnerabilities is fueling concern.
Dutch startup Eye Security warned Saturday of online attacks targeting SharePoint file-sharing servers, with Microsoft quick to confirm the report and release patches to protect systems.
The vulnerability allowed hackers to retrieve credentials and then access SharePoint servers kept at users' facilities, according to Microsoft.
Cloud-based SharePoint software was safe from the problem, the company said.
Eye Security determined that more than 400 computer systems were compromised by hackers during waves of attacks.
Targets included government organizations in Europe, the Middle East and the United States - among them the US nuclear weapons agency, media reports indicated.
"On-premises SharePoint deployments - particularly within government, schools, healthcare and large enterprise companies - are at immediate risk," cybersecurity firm Palo Alto Networks warned in a note.
Microsoft has not disclosed the number of victims in the attacks.
SharePoint had more than 200 million active users as of 2020, according to the most recent figures available from Microsoft.
Microsoft has attributed the cyberattacks to groups backed by China.
The culprits are believed to include Chinese state actors known as Linen Typhoon and Violet Typhoon along with a group called Storm-2603 which "is considered with moderate confidence to be a threat actor based in China."
The Typhoon groups have been active for a decade or more, and are known for intellectual property theft as well as espionage, according to Microsoft.
Less was known about Storm-2603 and its motives.
"Investigations into other actors also using these exploits are ongoing," Microsoft said, urging users to patch SharePoint servers to avoid becoming hacking victims.
Cybersecurity specialist Damien Bancal noted in a recent blog post that he found "ready-to-use exploit code" for the vulnerability at a popular website.
The assault on SharePoint servers is the latest in a series of sophisticated attacks carried out by state-sponsored groups against "the Microsoft ecosystem," according to Bancal.
In 2021, attacks by a Chinese hacker group known as Silk Typhoon compromised tens of thousands of email servers using Microsft Exchange software.
Microsoft's success at making its software commonplace in offices and homes also makes it a prime target for hackers out to steal money or information.
Microsoft software can hold sensitive and valuable information.
"It's not Microsoft that is being targeted, it's its customers," said Shane Barney, head of information security at US-based Keeper.
Targeting Microsoft programs is a means to an end, and tomorrow it could be software from another company, said Rodrigue Le Bayon, head of Orange Cyberdefense computer emergency response team.
China is not the only nation backing hacker operations as countries around the world hone cyber capabilities, according to Le Bayon.
Nevertheless, China is repeatedly singled out by companies and goverments hit by hacks.
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

Microsoft heads into Q4 earnings announcement with one big Risk Question: Is the company's AI ...
Microsoft heads into Q4 earnings announcement with one big Risk Question: Is the company's AI ...

Time of India

timean hour ago

  • Time of India

Microsoft heads into Q4 earnings announcement with one big Risk Question: Is the company's AI ...

Microsoft investors who will be attending the company's upcoming fourth quarter earnings call may have one 'big question' for the tech giant. They are expected to ask the company: Is the company's AI 'upper hand' at risk as its partner OpenAI plans to go public while reportedly discussing partnership opportunities with rivals like Google, Oracle and CoreWeave for cloud services? Due to its exclusive licensing deals and access to OpenAI's models, Microsoft has been a significant beneficiary of the generative AI boom. This partnership has reportedly fueled growth in Microsoft's Azure cloud business and pushed its market value toward $4 trillion. According to data shared by Visible Alpha (seen by the news agency Reuters), the tie-up is expected to have driven a 34.8% increase in Microsoft's cloud service Azure's revenue for the April-June quarter, which exceeds the 33% rise in the last quarter. However, the partnership deal is currently being renegotiated as OpenAI aims for a public listing. As per recent reports, a potential deadlock over the extent of Microsoft's access to the technology of the ChatGPT maker and its stake is expected in the coming days, if OpenAI convert into a public-benefit company. This conversion requires Microsoft's approval and is crucial for a $40 billion funding round led by SoftBank Group, with $20 billion contingent on the restructuring being finalised by the end of 2025. Meanwhile, OpenAI has recently deepened its Oracle ties with a planned 4.5 gigawatts of data centre capacity and added Google Cloud as a supplier for computing capacity. Why investors may still have confidence in the Microsoft OpenAI deal According to a report by Reuters, UBS analysts have noted that investor opinions on the Microsoft–OpenAI deal are mixed. However, Microsoft maintains a stronger position in the partnership. 'Microsoft's leadership earned enough credibility … such that the company will end up negotiating terms that will be in the interest of its shareholders,' the analysts said to Reuters. Some of that confidence among investors appears to be reflected in Microsoft's stock performance, which has gained over 20% so far this year. During the April–June period (fourth quarter of Microsoft's fiscal year), the company may have seen positive effects from a weaker dollar, steady demand for non-AI Azure services, and early Windows orders by PC makers anticipating potential US tariffs, Reuters noted. Meanwhile, revenue is projected to have grown by 14% to $73.81 billion, marking its most significant increase in three quarters, according to LSEG data seen by Reuters. The company's profit is also expected to have risen 14.2% to $25.16 billion, though this represents a slightly slower pace than the prior quarter due to higher operating expenses. Apart from this, capital spending is also likely to draw attention in the earnings call after Alphabet recently announced $10 billion increase in its annual budget. Microsoft has indicated it is still facing capacity limits in AI and suggested further capital expenditure growth after spending over $80 billion last fiscal year. However, the pace may be slower and focused on shorter-term assets like AI chips. According to Dan Morgan of Synovus Trust, who holds Microsoft stock, the investment appears to be yielding results. 'Investors may still be underestimating the potential for Microsoft's AI business to drive durable consumption growth in the agentic AI era,' Morgan said to Reuters. iQOO Z10R 5G goes on Sale: BEST Budget Phone for Content Creators? AI Masterclass for Students. Upskill Young Ones Today!– Join Now

China to ‘solidly advance' trilateral cooperation with Bangladesh & Pakistan, says its envoy in Dhaka
China to ‘solidly advance' trilateral cooperation with Bangladesh & Pakistan, says its envoy in Dhaka

The Print

timean hour ago

  • The Print

China to ‘solidly advance' trilateral cooperation with Bangladesh & Pakistan, says its envoy in Dhaka

Last month, the Foreign Secretaries of Bangladesh and Pakistan met Chinese Vice Minister of Foreign Affairs Sun Weidong in the city of Kunming in the first of its kind trilateral. While the Chinese readout indicated that the trilateral was not directed at any 'third party'—a reference to India—Beijing has stepped up efforts to deepen engagement with Bangladesh since the fall of Sheikh Hasina's government in August 2024. Speaking at the Jatiya Press Club in Dhaka, Yao, according to the local media, said, 'China looks forward to making joint efforts with Bangladesh and Pakistan to solidly advance the trilateral cooperation and achieve tangible results.' New Delhi: China aims to 'solidly advance' trilateral cooperation with Bangladesh and Pakistan, as the Communist Party of China seeks to deepen ties with the Bangladesh Nationalist Party (BNP) and the Jamaat-e-Islami, Beijing's envoy to Dhaka Yao Wen said Tuesday. Chief Adviser of Bangladesh Muhammad Yunus travelled to China earlier this year, where he indicated that Dhaka is the 'guardian of the ocean' for India's land-locked North East, while calling for larger Chinese investments. Chinese businesses have heeded the call, according to Yao, with Beijing becoming the largest source of foreign direct investment (FDI) flowing into Bangladesh since the change in regime on 5 August 2024. Beijing also promised $2.1 billion in investments, loans and grants directed towards Bangladesh during Yunus' visit to China. Sheikh Hasina, the former Prime Minister of Bangladesh fled Dhaka for New Delhi on 5 August, 2024 after facing months of protests by students over the imposition of a quota for veterans of the 1971 Liberation War. Bangladesh's interim foreign minister Touhid Hossain met his Pakistani counterpart Ishaq Dar in New York City Monday, on the margins of the two-state conference organised by the United Nations (UN). It is the fourth meeting between the two since October 2024, with both Hossain and Dar agreeing to plan for further high-level visits in the near future. Also read: Beijing hosts 1st Pakistan-China-Bangladesh trilateral, says 'not directed at any third party' The strategic realignment of Bangladesh The strategic realignment between Dhaka with Islamabad and Beijing comes after a year of strained ties with New Delhi. Former Prime Minister Sheikh Hasina has been living in New Delhi since her ouster, as reported by ThePrint. Bangladesh has been pushing for Hasina's extradition with an official request made in December 2024. While India has acknowledged receiving the request from Bangladesh, Hasina remains in New Delhi, even as Dhaka has proceeded with laying charges against the former Prime Minister at the International Crimes Tribunal (ICT). The ICT located in Dhaka recently sentenced Hasina to six months imprisonment holding the former Prime Minister in contempt of the tribunal. Beijing has taken up the mantle to realign South Asia, recently expanding the China Pakistan Economic Corridor (CPEC) to Afghanistan. The announcement in May came after a trilateral meeting between Chinese Foreign Minister Wang Yi, his Pakistani counterpart Ishaq Dar and the foreign minister of the Taliban regime Amir Khan Muttaqi in Beijing. China has sought to strengthen its ties with the Bangladeshi political landscape with leaders of the BNP and Jamaat visiting the country in the last couple of weeks. A delegation from the Jamaat most recently visited the country in early July. 'China's relationships with the Bangladesh Nationalist Party (BNP) and Jamaat-e-Islami were hindered over the past 10 years. Now, efforts are underway to strengthen those ties,' Yao said, while retorting that the reporters 'know why' ties were hindered in the last decade, as per reports. India has long been considered close to the Awami League—Hasina's party—which has since been banned by Dhaka in May 2025. The evolving foreign policy situation between India and Bangladesh has seen both countries react to a number of irritants in ties, often publicly. Most recently, India had urged Dhaka to 'reconsider' the demolition of a house in the city of Mymensingh reportedly linked to film-maker Satyajit Ray. Dhaka, however, denied any links between the film-maker and the house, even as the demolition orders were paused as per reports. While ties at the political level have been tenuous at best, Prime Minister Narendra Modi met Yunus on the margins of the BIMSTEC Summit in Thailand earlier this year. Dhaka has taken over the chair of the bloc, which has been a key part of New Delhi's regional push since the South Asia Association for Regional Cooperation (SAARC) has seen little activity in the last decade. The Bay of Bengal Initiative for Multi-Sectoral Technical and Economic Cooperation (BIMSTEC) consists of India, Bangladesh, Bhutan, Myanmar, Nepal, Sri Lanka and Thailand. The Chinese envoy also said that Beijing is ready to implement the Teesta River Comprehensive Management and Restoration Project (TRCMRP)—a comprehensive water management and infrastructure development project on the Teesta river. The river flows through both India and Bangladesh. Hasina during her visit to India in 2024 had indicated her intention for India to manage the project. However, since her ouster, no decision has been taken on the project. (Edited by Viny Mishra) Also read: Chinese envoy offers to help Bangladesh govt counter 'disinfo' on global media platforms

BluSmart follows Gensol group firms into insolvency after ₹1.28 cr default
BluSmart follows Gensol group firms into insolvency after ₹1.28 cr default

Mint

timean hour ago

  • Mint

BluSmart follows Gensol group firms into insolvency after ₹1.28 cr default

The wheels have come off the fraud-hit BluSmart Mobility, once hailed as a pioneer in India's electric ride-hailing startup, as the company has been formally admitted into insolvency by the National Company Law Tribunal (NCLT) in Ahmedabad. The move follows payment defaults totalling over ₹ 1.28 crore and adds BluSmart to a growing list of Gensol-linked entities now undergoing bankruptcy proceedings, including its parent Gensol Engineering Ltd and sister concern Gensol EV Leasing Pvt Ltd. In an order dated 28 July, a two-member bench comprising Justice Shammi Khan (Judicial Member) and Sanjeev Sharma (Technical Member) admitted BluSmart into the Corporate Insolvency Resolution Process (CIRP) under the Insolvency and Bankruptcy Code (IBC), 2016. 'In light of the above findings, this Tribunal is satisfied that the Financial Creditor is entitled to the relief as sought. The Corporate Debtor's default justifies the admission of the petition and the initiation of CIRP under the Code,' the tribunal said in its order, reviewed by Mint. The dispute with the financial creditor began after BluSmart Mobility raised ₹ 15 crore through 15 non-convertible debentures (NCDs) on 20 April 2023, with Catalyst Trusteeship as the debenture trustee. Under the agreement, BluSmart was to start repaying the principal by 30 April 2023, but unilaterally deferred it to 31 May, which Catalyst viewed as a breach. In early 2025, BluSmart defaulted on payments due in February, March, and April—totalling ₹ 1.28 crore, prompting Catalyst Trusteeship to seek insolvency proceedings against the company. Supporting documents included default notices, bank records, and an email from co-founder Anmol Singh Jaggi admitting liability that led to the admission of insolvency plea. BluSmart opposed the insolvency plea, arguing that the defaults were temporary, the petition was premature and motivated and that procedural issues such as missing IRP details and vague timelines weakened the creditor's case. The company also pointed to the 15 April Securities and Exchange Board of India (Sebi) order against Gensol Engineering and its promoters as background pressure behind the filing. However, the tribunal rejected all objections, holding that the defaults were material and proven, the promoter had admitted liability, and procedural gaps had been corrected. It also stated that the Sebi order had no bearing on BluSmart's contractual obligations to repay its lenders. The tribunal appointed NPV Insolvency Professionals Pvt Ltd as the Interim Resolution Professional (IRP), which will now take control of BluSmart's management, issue public notices and invite claims from creditors. A moratorium has also been imposed, halting all ongoing or new legal actions, asset transfers and recovery proceedings against the company. Under IBC timelines, the IRP must invite claims within three days and constitute a Committee of Creditors (CoC) within 30 days. The entire resolution process must be completed in 180 days, extendable by another 90 days. If no viable resolution plan is approved within that time, BluSmart may face liquidation. With BluSmart joining Gensol Engineering and Gensol EV Leasing in insolvency, legal experts believe the case may become a landmark test for group insolvency in India—a concept not yet formally codified in law. Courts have, however, allowed consolidated proceedings in rare cases like Videocon, where 13 related companies were treated as a single economic entity. 'This could set the stage for group insolvency. If operational and financial links between these firms are clearly established, it may prompt courts to adopt a similar approach,' said Raheel Patel, partner at Gandhi Law Associates. 'The real challenge ahead is determining whether their assets and debts should be resolved jointly or separately, and whether overlapping creditors and related-party transactions will be prioritized for scrutiny,' Sonam Chandwani, managing partner at KS Legal & Associates, said. When BluSmart defaulted and suspended operations, those same vehicles used as collateral for Gensol loans became value at risk. Power Finance Corporation Ltd and the Indian Renewable Energy Development Agency Ltd (Ireda) were thus exposed to defaults arising from both entities, effectively making them overlapping creditors, she added. Parth Contractor, founder, Chambers of Parth Contractor, said, "When one entity has a financial crunch, its ripple effects are noticed in sister concerns or associated entities. But the decision to admit a company into insolvency, does not depend on the position of the sister concerns or the group company, but solely on the transaction/issue between the specific debtor and the specific creditor, which in this case was BluSmart and Catalyst Trusteeship". BluSmart's insolvency is the latest and perhaps the most visible blow to the Gensol Group, which has been under intense regulatory scrutiny. In June, Ireda revealed that Gensol Engineering had defaulted on loans worth ₹ 510 crore. On 15 April, the Sebi issued an interim order accusing Anmol and Puneet Jaggi of diverting investor funds meant for electric vehicle purchases towards personal luxuries, including a $5 million apartment and high-end golf equipment. Sebi also found that Gensol had procured only 4,704 electric vehicles despite claiming funding for 6,400. Both promoters resigned from Gensol's board on 6 May. The Securities Appellate Tribunal (SAT), on 7 May, declined to stay Sebi's order and asked the company to respond, with the market regulator expected to issue a final decision thereafter.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store