Friday, June 26, 2026
40.3 C
New Delhi

Microsoft’s DART Report Exposes Ransomware Attack With A Hidden Second Hacker

Show Quick Read

Key points generated by AI, verified by newsroom

  • Microsoft discovered two separate hacking groups operating simultaneously.
  • Their parallel operations made detection extremely difficult initially.
  • Storm-2603 exploited SharePoint; another group used DLL sideloading.
  • Microsoft recommends patching systems, securing high-privilege accounts.

Microsoft has uncovered a complex cyberattack involving two separate hacking groups operating at the same time, rather than one after another, making the activity far harder to detect. The findings come from a Microsoft Incident Response (DART) report, which found that the intrusion combined familiar ransomware methods with additional tactics aimed at securing long-term access to victim systems. 

Investigators traced the activity to a known group called Storm-2603, but soon found a second, unrelated attacker working independently within the same environment, leading to a much wider probe than originally expected.

How Did Investigators Discover Two Separate Hacking Groups?

According to the report, the initial probe pointed to lateral movement that went beyond the first affected organisation and into a second one. When researchers reached out, that second entity confirmed it had also been hit by the same ransomware activity linked to Storm-2603. However, a deeper analysis carried out with Microsoft Threat Intelligence showed that a different, unconnected threat actor was also active in the same systems.

ALSO READ: GTA 6 PC Release Date: Everything We Know So Far

“Two distinct threat activity streams were operating in parallel, rather than sequentially, making them difficult to detect in isolation,” the researchers said, adding that the full scale of the attack only became clear once identity, endpoint, and cloud telemetry were studied together.

Microsoft said Storm-2603 had been targeting on-premises SharePoint servers since mid 2025 by exploiting publicly known vulnerabilities. Meanwhile, the second group showed signs of DLL sideloading, a method that can be used to hide behind trusted software while installing backdoors or maintaining persistent access. The report did not disclose the scale of losses caused by the attackers.

What Should Organisations Do To Stay Protected?

“This case highlights a growing reality: modern attacks are not always isolated events. Sometimes they are overlapping campaigns that demand coordinated visibility and response,” Microsoft said.

ALSO READ: Quote Of The Day | Bill Gates On Why Failure Matters More Than Success

The company recommended several steps to reduce risk, including patching internet-facing systems quickly, treating high-privilege accounts as a major attack surface, deploying endpoint protection across all systems in advance, and avoiding security gaps created by inconsistent or delayed tool rollouts.

Go to Source

Hot this week

Saudi Arabia imposes travel ban on 3 African countries, halts visas over Ebola concerns

Saudi Arabia has suspended travel and visas for DR Congo, Uganda and South Sudan. Read More

Myanmar’s anti-drug crackdown: Authorities torch USD 600 million worth of seized narcotics

Smoke and flame rise from burning illegal narcotics during a destruction ceremony marking the U.N.’s International Day Against Drug Abuse and Illicit Trafficking, on the outskirts of Yangon, Myanmar, Friday, June 26, 2026. Read More

Life-changing donation: Snapchat CEO Evan Spiegel and his wife Miranda Kerr donate $550 million to clear medical debt for more than 261,000 California residents

Snapchat CEO Evan Spiegel and his wife, model and entrepreneur Miranda Kerr, have backed one of California’s biggest medical debt relief efforts. Read More

Greece turns to space technology: AI-powered satellites begin tracking wildfires

A replica of an OroraTech wildfire-detection satellite is displayed at the company’s facilities in Athens, Greece, on Thursday, June 18, 2026, as Greece integrates a new constellation of wildfire-detection satellites into its nati Read More

Quote of the day by Oprah Winfrey: “One of the things that I encourage for anybody who is interested in their own charity or...

Oprah Winfrey When most people hear the word philanthropy, they picture the very wealthy writing enormous cheques. It can feel like something reserved for billionaires, far removed from ordinary life. Read More

Topics

Saudi Arabia imposes travel ban on 3 African countries, halts visas over Ebola concerns

Saudi Arabia has suspended travel and visas for DR Congo, Uganda and South Sudan. Read More

Myanmar’s anti-drug crackdown: Authorities torch USD 600 million worth of seized narcotics

Smoke and flame rise from burning illegal narcotics during a destruction ceremony marking the U.N.’s International Day Against Drug Abuse and Illicit Trafficking, on the outskirts of Yangon, Myanmar, Friday, June 26, 2026. Read More

Life-changing donation: Snapchat CEO Evan Spiegel and his wife Miranda Kerr donate $550 million to clear medical debt for more than 261,000 California residents

Snapchat CEO Evan Spiegel and his wife, model and entrepreneur Miranda Kerr, have backed one of California’s biggest medical debt relief efforts. Read More

Greece turns to space technology: AI-powered satellites begin tracking wildfires

A replica of an OroraTech wildfire-detection satellite is displayed at the company’s facilities in Athens, Greece, on Thursday, June 18, 2026, as Greece integrates a new constellation of wildfire-detection satellites into its nati Read More

Quote of the day by Oprah Winfrey: “One of the things that I encourage for anybody who is interested in their own charity or...

Oprah Winfrey When most people hear the word philanthropy, they picture the very wealthy writing enormous cheques. It can feel like something reserved for billionaires, far removed from ordinary life. Read More

6,6,6,6,0,6! Marcus Stoinis Unleashes Carnage In MLC 2026 With 16-Ball Blitz

Show Quick Read Key points generated by AI, verified by newsroom Stoinis’ 42 from 16 balls powered Seattle Orcas’ innings. He smashed 30 runs from six consecutive deliveries rapidly. Read More

What Gautam Gambhir Told Shreyas Iyer After He Became India’s New T20 Captain

Show Quick Read Key points generated by AI, verified by newsroom Shreyas Iyer appointed India T20I captain, succeeding Suryakumar Yadav. Coach Gautam Gambhir congratulated Iyer, emphasizing national team responsibility. Read More

Want GTA VI Cheaper? This Gift Card Trick Could Save You 15%

Show Quick Read Key points generated by AI, verified by newsroom Gamers are finding savings on upcoming GTA VI purchase. Discounted gift cards offer up to 15% off game. Reddit user saved 15% using Eneba’s PlayStation cards. Read More

Related Articles