PanamaTimes

Monday, Jul 14, 2025

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

China state-sponsored actor carries out 'attack' on US critical infrastructure, Microsoft says

Microsoft says that Volt Typhoon is a state-sponsored actor of the PRC

China state-sponsored cyber actor Volt Typhoon is targeting critical infrastructure organizations in the U.S., according to Microsoft.

Microsoft warned Wednesday that Volt Typhoon, a cyber actor linked to the People's Republic of China, is targeting critical infrastructure organizations in the U.S.


Microsoft said in a Wednesday post that the company has "uncovered stealthy and targeted malicious activity focused on post-compromise credential access and network system discovery aimed at critical infrastructure organizations in the United States."

"The attack is carried out by Volt Typhoon," Microsoft said. Volt Typhoon is a Chinese state-sponsored actor that focuses on "espionage and information gathering."

"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the statement reads.

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) and international cybersecurity authorities issued a joint Cybersecurity Advisory (CSA) warning the agencies believe Volt Typhoon, which they noted is associated with the People's Republic of China, "could apply the same techniques" against infrastructure networks across the U.S. and "other sectors worldwide."

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) acknowledged it is aware of Volt Typhoon's activities threatening U.S. critical infrastructure organizations and issued warning along with international cybersecurity authorities.


The CSA explained Volt Typhoon's primary tactics, techniques and procedures (TTPs) is "living off the land," which allows it to avoid detection by using built-in network administration tools to blend in with normal Windows systems and fly under the radar of third-party endpoint detection and response products.

The agencies recommend organizations take steps to tighten up their cybersecurity in light of the threat, such as hardening domain controllers, monitoring event logs, limiting port proxy usage, investigating any unusual IP addresses and reviewing firewall configurations.

Newsletter

Related Articles

PanamaTimes
0:00
0:00
Close
Biden’s Doctor Pleads the Fifth to Avoid Self-Incrimination on President’s Medical Fitness
US Imposes New Tariffs on Brazilian Exports Amid Political Tensions
U.S. Enacts Sweeping Tax and Spending Legislation Amid Trade Policy Shifts
AI Raises Alarms Over Long-Term Job Security
House Oversight Committee Subpoenas Former Jill Biden Aide Amid Investigation into Alleged Concealment of President Biden's Cognitive Health
OpenAI Secures Multimillion-Dollar AI Contracts with Pentagon, India, and Grab
Brazilian Congress Rejects Lula's Proposed Tax Increase on Financial Transactions
Landslide in Bello, Colombia, Results in Multiple Casualties
Papa Johns pizza surge near the Pentagon tipped off social media before Trump's decisive Iran strike
Juncker Criticizes EU Inaction on Trump Tariffs
Minnesota Lawmaker Melissa Hortman and Husband Killed in Targeted Attack; Senator John Hoffman and Wife Injured
Wreck of $17 Billion San José Galleon Identified Off Colombia After 300 Years
Sole Survivor of Air India Crash Recounts Escape
Coinbase CEO Warns Bitcoin Could Supplant US Dollar Amid Mounting National Debt
UK and EU Reach Agreement on Gibraltar's Schengen Integration
Israeli Finance Minister Imposes Banking Penalties on Palestinians
U.S. Inflation Rises to 2.4% in May Amid Trade Tensions
Trump's Policies Prompt Decline in Chinese Student Enrollment in U.S.
Global Oceans Near Record Temperatures as CO₂ Levels Climb
Trump Announces U.S.-China Trade Deal Covering Rare Earths
Smuggled U.S. Fuel Funds Mexican Cartels Amid Crackdown
Protests Erupt in Los Angeles with Symbolic Flag Burning
Trump Administration Issues New Travel Ban Targeting 12 Countries
Man Group Mandates Full-Time Office Return for Quantitative Analysts
JPMorgan Warns Analysts Against Accepting Future-Dated Job Offers
Builder.ai Faces Legal Scrutiny Amid Financial Misreporting Allegations
Japan Grapples with Rice Shortage Amid Soaring Prices
Goldman Sachs Reduces Risk Exposure Amid Market Volatility
HSBC Chairman Mark Tucker to Return to AIA as Non-Executive Chair
Israel Confirms Arming Gaza Clan to Counter Hamas Influence
Judge Blocks Trump's Ban on International Students at Harvard
Trump Proposes Travel Ban on 'Uncontrolled' Countries
Panama Port Owner Balances US-China Pressures
Trump Administration Accused of Obstructing Deportation Cases
Trump’s China Strategy Remains a Geopolitical Puzzle
Eurozone Inflation Falls Below ECB Target to 1.9%
Call for a New Chapter in Globalisation Emerges
Blackstone and Rivals Diverge on Private Equity Strategy
Mayor’s Security Officer Implicated | Shocking New Details Emerge in NYC Kidnapping Case
Bangkok Ranked World's Top City for Remote Work in 2025
Denmark Increases Retirement Age to 70, Setting a European Precedent
Netanyahu Accuses Western Leaders of 'Emboldening Hamas'
Escalating Trade Tensions and Market Reactions
OnlyFans Reportedly in Talks for $8 Billion Sale
JBS Gains Shareholder Approval for U.S. Stock Listing
Booz Allen Hamilton to Cut 2,500 Jobs Amid Federal Spending Reductions
Trump Signs Executive Orders to Accelerate Nuclear Energy Development
Harvard Temporarily Blocks Trump Administration's International Student Ban
Nippon Steel Forms Partnership with U.S. Steel, Headquarters to Remain in Pittsburgh
Trump Expands Tariff Threats to Apple and Samsung Devices
×