Mail servers of some firms compromised | The Daily Star
12:00 AM, April 02, 2021 / LAST MODIFIED: 09:32 AM, April 02, 2021

Mail servers of some firms compromised

Govt asks others to check vulnerability

Some Bangladeshi organisations running Microsoft Exchange mail servers have been compromised by cyberattacks, says the e-Government Computer Incident Response Team (BGD e-GOV CIRT) in an advisory.

It named a few business groups that have already been compromised and asked others to check their systems.

For all latest news, follow The Daily Star's Google News channel.

The advisory mentioned the name of HAFNIUM, a Chinese hacker group, which has carried out such attacks across the globe.

The BGD e-GOV CIRT has asked a number of state-owned and private organisations to carry out scans of their mail servers to see if any malware had been injected into their system and to believe that they have been compromised if such malware was found.

According to Tom Burt, corporate vice president, Customer Security & Trust at Microsoft, the attacks happen in three steps: firstly, the attacker would gain access to an Exchange Server either with stolen passwords or by using the previously undiscovered vulnerabilities to disguise itself as someone who should have access. Secondly, it would create what's called a web shell to control the compromised server remotely. Lastly, it would use that remote access -- run from the US-based private servers --– to steal data from an organisation's network.

The attacker group, HAFNIUM, is primarily known for targeting US industries and businesses. They shot to fame after they started exploiting vulnerability of customer-facing servers. Their activities came to light early this year with an increase in intensity since early March.


Stay updated on the go with The Daily Star Android & iOS News App. Click here to download it for your device.

Type START <space> BR and send SMS it to 22222

Type START <space> BR and send SMS it to 2222

Type START <space> BR and send SMS it to 2225

Leave your comments

Top News

Top News