Friday, June 26, 2026
40.3 C
New Delhi

Microsoft’s DART Report Exposes Ransomware Attack With A Hidden Second Hacker

Show Quick Read

Key points generated by AI, verified by newsroom

  • Microsoft discovered two separate hacking groups operating simultaneously.
  • Their parallel operations made detection extremely difficult initially.
  • Storm-2603 exploited SharePoint; another group used DLL sideloading.
  • Microsoft recommends patching systems, securing high-privilege accounts.

Microsoft has uncovered a complex cyberattack involving two separate hacking groups operating at the same time, rather than one after another, making the activity far harder to detect. The findings come from a Microsoft Incident Response (DART) report, which found that the intrusion combined familiar ransomware methods with additional tactics aimed at securing long-term access to victim systems. 

Investigators traced the activity to a known group called Storm-2603, but soon found a second, unrelated attacker working independently within the same environment, leading to a much wider probe than originally expected.

How Did Investigators Discover Two Separate Hacking Groups?

According to the report, the initial probe pointed to lateral movement that went beyond the first affected organisation and into a second one. When researchers reached out, that second entity confirmed it had also been hit by the same ransomware activity linked to Storm-2603. However, a deeper analysis carried out with Microsoft Threat Intelligence showed that a different, unconnected threat actor was also active in the same systems.

ALSO READ: GTA 6 PC Release Date: Everything We Know So Far

“Two distinct threat activity streams were operating in parallel, rather than sequentially, making them difficult to detect in isolation,” the researchers said, adding that the full scale of the attack only became clear once identity, endpoint, and cloud telemetry were studied together.

Microsoft said Storm-2603 had been targeting on-premises SharePoint servers since mid 2025 by exploiting publicly known vulnerabilities. Meanwhile, the second group showed signs of DLL sideloading, a method that can be used to hide behind trusted software while installing backdoors or maintaining persistent access. The report did not disclose the scale of losses caused by the attackers.

What Should Organisations Do To Stay Protected?

“This case highlights a growing reality: modern attacks are not always isolated events. Sometimes they are overlapping campaigns that demand coordinated visibility and response,” Microsoft said.

ALSO READ: Quote Of The Day | Bill Gates On Why Failure Matters More Than Success

The company recommended several steps to reduce risk, including patching internet-facing systems quickly, treating high-privilege accounts as a major attack surface, deploying endpoint protection across all systems in advance, and avoiding security gaps created by inconsistent or delayed tool rollouts.

Go to Source

Hot this week

Nihang-police standoff at Uttarakhand border ends after talks; group returns to Himachal

Nihang Sikhs interact with officials and a delegation from Punjab after ending their standoff at Nagrasu Gurudwara, in Rudraprayag. Read More

What’s Delaying The India-US Trade Deal? Piyush Goyal Explains The Biggest Hurdle

Show Quick Read Key points generated by AI, verified by newsroom US Treasury Secretary warns tariffs may revert after investigations. Current 10% global tariffs expire on July 24. Read More

School Dropouts To IPL Superstars: Indian Cricketers Who Left School To Pursue Cricket

For many aspiring athletes, balancing education and sport can be a challenge. While countless Indian cricketers completed their studies before making it big, a few decided to leave formal education behind to devote themselves entirely to cricket. Read More

Political Buzz: AAP Targets BJP Over Ayodhya Donation Case, Questions Delay and Scope of Probe

The alleged Ram Temple donation theft case in Ayodhya has taken a fresh political turn after the arrest of eight accused, with the Aam Aadmi Party (AAP) intensifying its attack on the BJP and the ongoing investigation. Read More

Temple Watch: Eight Held in Ayodhya Ram Temple Donation Case as Probe Sparks Fresh Political Debate

The investigation into the alleged Ram Temple donation theft case in Ayodhya has intensified, with police taking all eight individuals named in the FIR into custody following overnight questioning. Read More

Topics

Nihang-police standoff at Uttarakhand border ends after talks; group returns to Himachal

Nihang Sikhs interact with officials and a delegation from Punjab after ending their standoff at Nagrasu Gurudwara, in Rudraprayag. Read More

What’s Delaying The India-US Trade Deal? Piyush Goyal Explains The Biggest Hurdle

Show Quick Read Key points generated by AI, verified by newsroom US Treasury Secretary warns tariffs may revert after investigations. Current 10% global tariffs expire on July 24. Read More

School Dropouts To IPL Superstars: Indian Cricketers Who Left School To Pursue Cricket

For many aspiring athletes, balancing education and sport can be a challenge. While countless Indian cricketers completed their studies before making it big, a few decided to leave formal education behind to devote themselves entirely to cricket. Read More

Political Buzz: AAP Targets BJP Over Ayodhya Donation Case, Questions Delay and Scope of Probe

The alleged Ram Temple donation theft case in Ayodhya has taken a fresh political turn after the arrest of eight accused, with the Aam Aadmi Party (AAP) intensifying its attack on the BJP and the ongoing investigation. Read More

Temple Watch: Eight Held in Ayodhya Ram Temple Donation Case as Probe Sparks Fresh Political Debate

The investigation into the alleged Ram Temple donation theft case in Ayodhya has intensified, with police taking all eight individuals named in the FIR into custody following overnight questioning. Read More

NationWatch: Muharram Security Tightened Nationwide as Ratlam Electrocution Tragedy Claims Three Lives

Security has been significantly strengthened across several states as authorities prepare for Muharram processions, with police conducting flag marches, surveillance operations, and public outreach to ensure peaceful observance of the occasion. Read More

UP POLLS 2027: Newly Formed UP BJP Team Holds Crucial Strategy Meeting in Lucknow to Target Social Engineering

The Uttar Pradesh Bharatiya Janata Party (BJP) is set to hold the first meeting of its newly appointed office-bearers in Lucknow at 4:00 PM today, marking the beginning of the party’s preparations for the 2027 Uttar Pradesh Assembly elections. Read More

MUHARRAM TRAGEDY: 3 Dead, 9 Injured as Tazia Contacts High-Tension Power Line in MP’s Ratlam

A devastating accident marred the Muharram preparations in Madhya Pradesh’s Ratlam district, where three individuals lost their lives after a Tazia came into contact with an overhead high-tension electricity wire. Read More

Related Articles