Chinese cyberespionage group hacks US organisations with Exchange zero-day flaws
Chinese cyberespionage group hacks US organisations with Exchange zero-day flaws Microsoft believes Chinese APT group Hafnium is using a set of previously unknown Exchange Server vulnerabilities to access mailbox contents and perform remote code execution. Credit: Microsoft Microsoft has released emergency patches for four previously unknown vulnerabilities in Exchange Server that a cyberespionage group was exploiting to break into organizations. The flaws allow the extraction of mailbox contents and the installation of backdoors on vulnerable servers. Microsoft attributes the a...