• News/
  • https://www.theregister.com/2025/08/01/china_us_intel_attacks/

China says US spies exploited Microsoft Exchange zero-day to steal military info

The Register
·
Jessica Lyons
·
Published Aug 1, 2025
·
Updated

China has accused US intelligence agencies of exploiting a Microsoft Exchange zero-day exploit to steal defense-related data and take over more than 50 devices belonging to a "major Chinese military enterprise" for nearly a year. In a Thursday alert, the National Computer Network Emergency Response Technical Team / Coordination Center of China (CNCERT/CC), a group which claims that it is non-governmental, said American cyberattacks against Chinese high-tech, defense-related universities, research institutes, and enterprises "have become more targeted and their methods, more covert." These data-stealing campaigns pose "a serious threat to the scientific research and production security of China's defense and defense industries, and even to national security," the alert continues. The US National Security Agency did not immediately respond to The Register's inquiries. CNCERT/CC's claims about American spies infiltrating military and defense-related organizations follow several recent allegations from the US about Chinese snooping activity. Last week, US-based security firms including Microsoft blamed recent SharePoint zero-day attacks on several Chinese groups, including at least two Beijing-backed snooping and data stealing crews, and a China-based ransomware gang. And earlier this week, SentinelLabs' security researchers uncovered more than a dozen patents for offensive cybersecurity tools filed by Chinese companies allegedly tied to Beijing's Silk Typhoon espionage crew. The...

Read full article

Affected Software

1 affected component
Microsoft Exchange
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203
China says US spies exploited Microsoft Exchange zero-day to steal military info - SecAlerts