Victim Profiles in Microsoft SharePoint Attacks Point to Targeted Intelligence Campaign, Researchers Say

Eye Security, a Netherlands-based cybersecurity company that has been tracking Microsoft SharePoint attack victims, says an analysis of victims shows that nearly a third were government sector systems.
“From the data, it’s clear this wasn’t a random or opportunistic campaign. The attackers knew exactly what they were looking for,” Lodi Hensen, Eye Security vice president of security operations, said on July 29 in a blog post.
Microsoft identified two Chinese state-sponsored groups and a separate China-based group among the perpetrators.
Multiple U.S. agencies have confirmed they were subject to the mass exploit, including the National Nuclear Security Administration and the National Institutes of Health….