Chinese hackers use Warlock ransomware in SharePoint attacks
A Chinese hacking group has used Warlock ransomware to target organizations serving essential services in Portuguese- and Spanish-speaking regions across Europe, Africa, and Latin America. Symantec reports the group exploited Microsoft SharePoint vulnerabilities to compromise water utilities, telecoms, a university, and a regional government. In at least one case, the hackers disabled security software on dozens of systems before deploying ransomware, indicating a methodical approach.
- Warlock ransomware linked to China-based hacking group
- Attacks focused on Portuguese, Spanish-speaking regions
- Victims include water, telecom, education, and local government
- Hackers exploited multiple SharePoint security flaws
- Attackers disabled security defenses before ransomware launch
Sources covering this
In this story
More in Cybersecurity
Dell issues urgent patches for critical CSM vulnerabilities
Dell has released fixes for two critical vulnerabilities in its Container Storage Modules (CSM), which link enterprise storage arrays to…
Microsoft's X account compromised to promote crypto scam
Unknown attackers took control of Microsoft's official X account, which has over 13 million followers, to promote a fraudulent…
Federal judge rules warrantless Flock search unconstitutional
A federal judge in Oklahoma found that a police officer violated constitutional protections by checking a car's license plate in Flock’s…
Florida county finds 11 unauthorized surveillance cameras
Authorities in St.