London Daily

Focus on the big picture.
Friday, Nov 07, 2025

At least 30,000 US organizations, small businesses and government offices were victims of Microsoft Exchange hack

At least 30,000 US organizations, small businesses and government offices were victims of Microsoft Exchange hack

A purported Chinese hacking group exploited bugs in Microsoft's email software system to steal data from US organizations and agencies.
At least 30,0000 organizations across the US have been hacked over the last few days through flaws in Microsoft's Exchange server email software, sources familiar with the matter told KrebsOnSecurity.

The "unusually aggressive Chinese cyber espionage unit" that Microsoft calls "Hafnium" is focusing on stealing emails from a range of victims, including companies, small businesses, and local governments, Krebs said.

The group exploited four flaws in Microsoft's Exchange servers. The bugs gave attackers full remote control over the affected systems.

With each hacking incident, the group left behind a hacking tool called "web shell" that is protected by an easy password and could be accessed from any internet browser, the cybersecurity blog said. This tool allowed hackers to have administrative access to computer servers.

Microsoft released a security update this week to patch Exchange versions from 2013 to 2019. Microsoft recommended users immediately install updates to the Exchange product, which is primarily used by business customers. The company also said that it informed appropriate US government agencies about the breach.

Microsoft said the email system is used by organizations including companies, infectious disease researchers, defense contractors, law firms, NGOs, and universities.

The purported Chinese hacking group is responsible for seizing control over hundreds of thousands of Microsoft Exchange servers worldwide, two anonymous cybersecurity experts told KrebsOnSecurity.

Chinese Foreign Ministry spokesman Wang Wenbin responded to Microsoft's accusations in a Wednesday press briefing, saying there was not enough evidence to draw a conclusion on the Exchange hack's origins, according to Bloomberg.

This is the eighth time in the last 12 months that Microsoft has publicly reported state-sponsored hacks.

White House Press Secretary Jen Psaki said in a press briefing on Friday that the weaknesses found in Microsoft's Exchange Servers were "significant."

"We're concerned that there are a large number of victims," she added.

The Prague municipality and the Czech Ministry for Labor and Social Affairs were impacted by the Hafnium server breach, according to Reuters who cited a European cyber official briefed on the issue.
Newsletter

Related Articles

0:00
0:00
Close
On the Road to the Oscars? Meghan Markle to Star in a New Film
A Vote Worth a Trillion Dollars: Elon Musk’s Defining Day
AI Researchers Claim Human-Level General Intelligence Is Already Here
President Donald Trump Challenges Nigeria with Military Options Over Alleged Christian Killings
Nancy Pelosi Finally Announces She Will Not Seek Re-Election, Signalling End of Long Congressional Career
UK Pre-Budget Blues and Rate-Cut Concerns Pile Pressure on Pound
ITV Warns of Nine-Per-Cent Drop in Q4 Advertising Revenue Amid Budget Uncertainty
National Grid Posts Slightly Stronger-Than-Expected Half-Year Profit as Regulatory Investments Drive Growth
UK Business Lobby Urges Reeves to Break Tax Pledges and Build Fiscal Headroom
UK to Launch Consultation on Stablecoin Regulation on November 10
UK Savers Rush to Withdraw Pension Cash Ahead of Budget Amid Tax-Change Fears
Massive Spoilers Emerge from MAFS UK 2025: Couple Swaps, Dating App Leaks and Reunion Bombshells
Kurdish-led Crime Network Operates UK Mini-Marts to Exploit Migrants and Sell Illicit Goods
UK Income Tax Hike Could Trigger £1 Billion Cut to Scotland’s Budget, Warns Finance Secretary
Tommy Robinson Acquitted of Terror-related Charge After Phone PIN Dispute
Boris Johnson Condemns Western Support for Hamas at Jewish Community Conference
HII Welcomes UK’s Westley Group to Strengthen AUKUS Submarine Supply Chain
Tragedy in Serbia: Coach Mladen Žižović Collapses During Match and Dies at 44
Diplo Says He Dated Katy Perry — and Justin Trudeau
Dick Cheney, Former U.S. Vice President, Dies at 84
Trump Calls Title Removal of Andrew ‘Tragic Situation’ Amid Royal Fallout
UK Bonds Rally as Chancellor Reeves Briefs Markets Ahead of November Budget
UK Report Backs Generational Smoking Ban Ahead of Tobacco & Vapes Bill Review
UK’s Domino’s Pizza Group Reports Modest Like-for-Like Sales Growth in Q3
UK Supplies Additional Storm Shadow Missiles to Ukraine as Trump Alleges Russian Underground Nuclear Tests
High-Profile Broodmare Puca Sells for Five Million Dollars at Fasig-Tipton ‘Night of the Stars’
Wilt Chamberlain’s One-of-a-Kind ‘Searcher 1’ Supercar Heads to Auction
Erling Haaland’s Remarkable Run: 13 Premier League Goals in 10 Matches and Eyes on History
UK Labour Peer Warns of Emerging ‘Constituency for Hating Jews’ in Britain
UK Home Secretary Admits Loss of Border Control, Warns Public Trust at Risk
President Trump Expresses Sympathy for UK Royal Family After Title Stripping of Prince Andrew
Former Prince Andrew to Lose His Last Military Title as King Charles Moves to End His Public Role
King Charles Relocates Andrew to Sandringham Estate and Strips Titles Amid Epstein Fallout
Two Arrested After Mass Stabbing on UK Train Leaves Ten Hospitalised
Glamour UK Says ‘Stay Mad Jo x’ After Really Big Rowling Backlash
Former Prince Prince Andrew Faces Possible U.S. Congressional Appearance Over Jeffrey Epstein Inquiry
UK Faces £20 Billion Productivity Shortfall as Brexit’s Impact Deepens
UK Chancellor Rachel Reeves Eyes New Council-Tax Bands for High-Value Homes
UK Braces for Major Storm with Snow, Heavy Rain and Winds as High as 769 Miles Wide
U.S. Secures Key Southeast Asia Agreements to Reshape Rare Earth Supply Chains
US and China Agree One-Year Trade Truce After Trump-Xi Talks
BYD Profit Falls 33 % as Chinese EV Maker Doubles Down on Overseas Markets
US Philanthropists Shift Hundreds of Millions to UK to Evade Regulatory Uncertainty in Trump Era
Israeli Energy Minister Delays $35 Billion Gas Export Agreement with Egypt
King Charles Strips Prince Andrew of Titles and Royal Residence
Trump–Putin Budapest Summit Cancelled After Moscow Memo Raises Conditions for Ukraine Talks
Amazon Shares Soar 11% as Cloud Business Hits Fastest Growth Since 2022
Credit Markets Flooded with More Than $200 Billion of AI-Linked Debt Issuance
U.S. Treasury Secretary Scott Bessent Says China Made 'a Real Mistake' by Threatening Rare-Earth Exports
Report Claims Nearly Two Billion Dollars in Foreign Charity Funds Flowed into U.S. Advocacy Groups
×