The Silk Typhoon hacking group exploited zero-day vulnerabilities in Microsoft Exchange Server to gain initial access to victim networks, deploy web shells, and exfiltrate data. These vulnerabilities were exploited between late 2020 and 2021 as part of a widespread cyberespionage campaign targeting organizations, including those involved in COVID-19 research.
| Vendor | Product | Versions |
|---|---|---|
| microsoft | exchange | — |