Hackers exploited a security flaw in widely used Microsoft server software to launch a global attack compromising U.S. federal and state agencies, energy companies, and an Asian communications firm, the Washington Post reported, citing security researchers. Investigations are underway by the United States, Canada, and Australia into breaches affecting SharePoint document management servers, with experts warning thousands remain vulnerable.
The perpetrators and ultimate goals of the attack remain unclear, according to the Washington Post. Private researchers confirmed hackers targeted servers in China and a U.S. state legislature. At least two U.S. federal agencies suffered breaches shortly after Microsoft patched the initial flaw. The attackers subsequently exploited a related vulnerability, the report noted, citing U.S. Department of Homeland Security sources.
Reproduction reserved © Copyright ANSA
