Saudi Press

Saudi Arabia and the world
Friday, Mar 28, 2025

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

Microsoft says that Volt Typhoon is a state-sponsored actor of the PRC

China state-sponsored cyber actor Volt Typhoon is targeting critical infrastructure organizations in the U.S., according to Microsoft.

Microsoft warned Wednesday that Volt Typhoon, a cyber actor linked to the People's Republic of China, is targeting critical infrastructure organizations in the U.S.


Microsoft said in a Wednesday post that the company has "uncovered stealthy and targeted malicious activity focused on post-compromise credential access and network system discovery aimed at critical infrastructure organizations in the United States."

"The attack is carried out by Volt Typhoon," Microsoft said. Volt Typhoon is a Chinese state-sponsored actor that focuses on "espionage and information gathering."

"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement reads.

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) and international cybersecurity authorities issued a joint Cybersecurity Advisory (CSA) warning the agencies believe Volt Typhoon, which they noted is associated with the People's Republic of China, "could apply the same techniques" against infrastructure networks across the U.S. and "other sectors worldwide."

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) acknowledged it is aware of Volt Typhoon's activities threatening U.S. critical infrastructure organizations and issued warning along with international cybersecurity authorities.


The CSA explained Volt Typhoon's primary tactics, techniques and procedures (TTPs) is "living off the land," which allows it to avoid detection by using built-in network administration tools to blend in with normal Windows systems and fly under the radar of third-party endpoint detection and response products.

The agencies recommend organizations take steps to tighten up their cybersecurity in light of the threat, such as hardening domain controllers, monitoring event logs, limiting port proxy usage, investigating any unusual IP addresses and reviewing firewall configurations.

Newsletter

Related Articles

Saudi Press
0:00
0:00
Close
Removing the Political Adversary is Dismantling What's Remaining of Turkey's Economy.
Ex-FIFA President and French Football Icon Acquitted of Corruption Allegations
White House Investigates Security Breach After Journalist Accidentally Added to Secret Yemen Strike Chat
Volunteers in Jeddah Ensure No One Goes Hungry During Ramadan Iftar
New Restaurant Opens in Makkah's Iconic Clock Tower for Ramadan Iftar
Saudi Arabia's Project Masam Removes 552 Houthi Mines in Yemen
Saudi Arabia Fines Over 400 Foreign Trucks for Regulatory Violations
Saudi National Campaign for Charitable Work Reports Significant Donations in Ramadan
Historic Al-Hosn Al-Asfal Mosque Restored in Asir as Part of National Heritage Initiative
KSrelief Expands Humanitarian Efforts in Syria, Sudan, and Lebanon
Saudi Arabia Advocates for Global Water Cooperation at Forum
Madinah Governor Tours Islamic Arts Biennale in Jeddah
Saudi Foreign Minister in Cairo to Lead Meeting on Gaza Developments
Recognition of Saudi and Pakistani Entrepreneurs at Riyadh Ceremony
UAE Announces $1.4 Trillion Investment Plan in the United States
Saudi Arabia Innovates in Soil Quality and Water Conservation
Governor of Taif Engages with Rose and Aromatic Plants Cooperative
Saudi Food and Drug Authority Enhances Preparations for Hajj Season
Saudi Arabia Distributes Aid to Yemen and Romania
Restoration of Historic Al-Qalaah Mosque in Riyadh Underlines Heritage Preservation Efforts
Saudi Arabia Arrests Over 25,000 for Immigration Violations in One Week
UAE’s ADQ and Energy Capital Partners Announce $25 Billion Energy Venture in the U.S.
KSrelief Launches Extensive Ramadan Food Aid Initiative
Ramadan Celebrations Revitalize Historic Jeddah
Makkah Authorities Urge Worshippers to Follow Crowd Management Guidelines
Direct Flights Between Dammam and Damascus Reestablished for Syrian Residents
Saudi Main Index Rises to Close at 11,760 Amid Mixed Market Performance
Moroccan Prime Minister Aziz Akhannouch Visits Prophet's Mosque in Madinah
Cultural Development Fund Hosts Third Annual Storytellers Event in Riyadh
Investment Surge in Fintech, Gaming, and Health Care Across MENA Region
Surging Prices for Religious Tourism in Saudi Arabia Amid Ramadan Rush
Middle Eastern Airlines’ Fleet Projected to Surge Above Global Growth Rates
Oil Prices Rise Amid Supply Concerns and Sanctions on Iran
Saudi Arabia Reports Significant Decrease in US Treasury Holdings
Tabuk's Transformative Economic Landscape: A Hub of Growth and Innovation in Saudi Arabia
Saudi Arabia's Strategic Advances in Water Sustainability
Merrill Lynch Appointed as Market Maker for 20 Securities on Saudi Exchange
Gold Prices Set for Third Weekly Gain Amid Geopolitical Tensions and Economic Uncertainty
Saudi Banks Increase Debt Market Activities Amid Sukuk Surge
Saudi Aramco Launches Direct Air Capture Technology to Combat Emissions
Saudi Arabia Enhances Crowd Management at Grand Mosque for Ramadan
Abeer Al Akel Appointed CEO of Royal Commission for AlUla
Ukraine Pursues Partial Ceasefire in Saudi Arabia Talks Amid Ongoing Conflict
Saudi Arabia Arrests Over 25,000 Illegal Residents in Week-long Security Campaign
Royal Order Extends Dr. Eman Al-Mutairi’s Tenure as Deputy Minister of Commerce
Prophet’s Mosque Hosts 4,000 Mu’takifs for Ramadan Itikaf
Yemeni National Arrested for Exploiting Children for Begging in Riyadh
Makkah Region Records Highest Rainfall in Saudi Arabia
Makkah Grand Mosque Distributes Over 200,000 Iftar Meals Daily
Saudi Arabia Imposes Hefty Fines for Water Misuse Violations
×