Massive Global Cyberattack Exploits Microsoft Exchange Server Flaws
A widespread cyberattack leverages four zero-day vulnerabilities in Microsoft Exchange Servers, compromising over 250,000 servers worldwide. Attackers gain full access to emails and install persistent backdoors that security updates cannot fix.
A massive global cyberattack exploits four zero-day vulnerabilities in on-premises Microsoft Exchange Servers, granting attackers complete access to user emails and passwords. The breach gives hackers administrator privileges on the affected servers and allows them to reach other connected devices on the same network. Attackers install persistent backdoors so they maintain full access even after administrators apply security patches.
The scale of the attack is staggering, with an estimated 250,000 servers falling victim across the globe. In the United States alone, around 30,000 organizations experience compromises, while thousands of servers suffer breaches in the United Kingdom. High-profile targets include the European Banking Authority, the Norwegian Parliament, and Chile's Commission for the Financial Market.
Microsoft releases emergency updates for Exchange Server versions 2010, 2013, 2016, and 2019 in early March to patch the exploits, though these updates do not remove existing backdoors or undo previous damage. Small and medium businesses, local governments, and local institutions bear the brunt of the attack because they often lack the budget and specialized IT expertise required to defend against sophisticated cyber threats.