TechBooky AI Assistant
TechBooky AI Assistant
👋 Welcome to TechBooky AI Assistant

I can help with:
🔎 Tech News
🤖 AI Topics
💻 Gadgets
☁️ Cloud
✍️ Guest Posts
📢 Advertising
🔗 Backlinks
📩 Newsletter
  • AI Search
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise With TechBooky
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home Security

Microsoft Reveals DEV-0322 Originated The Zero-day Vulnerabilities On SolarWinds Network.

...Cozy Bear also took advantage of the Asian Leaked zero-day program on Americans.

Emeka Eni by Emeka Eni
July 16, 2021
in Security
Share on FacebookShare on Twitter
Share this story

Send it to someone who should read it.

f Facebook X X in LinkedIn wa WhatsApp tg Telegram @ Email
In Brief
  • Microsoft is relentless about upgrading its software and security service.
  • As expected, the MSTIC (Microsoft Threat Intelligence Center) revealed the latest discoveries related to the SolarWinds previous hack that believed the Russian’s are the prime and...
  • The MSTIC reportedly discovered a new group they called “DEV-0322” that attacked the cyber-security company, aiming to infiltrate and steal information from SolarWinds clients.

Microsoft is relentless about upgrading its software and security service. As expected, the MSTIC (Microsoft Threat Intelligence Center) revealed the latest discoveries related to the SolarWinds previous hack that believed the Russian’s are the prime and only suspect.

The MSTIC reportedly discovered a new group they called “DEV-0322” that attacked the cyber-security company, aiming to infiltrate and steal information from SolarWinds clients. It is worth noting that the cybersecurity company has several high profiled clients under its security network, especially the U.S. defense agency.

According to MSTIC, the perpetrators aimed at stealing SolarWinds software called “Serv-U FTP” — this software is presumed to boost the hacker tool to bypass the cyber-security company’s firewall and to access its high profiled clients records.

The DEV-0322 exploited a zero-day default the software company recently spotted during its routine cyber threat scan. The MSTIC used its custom Microsoft 365 Defender and detected anomalous malicious code that depicted the hackers attempted to register themselves as an administrator via Serv-U. Check Microsoft’s blog for more details about Serv-U and other malicious acts via the zero-day vulnerability.

SolarWinds recently published an in-depth analysis about Serv-U’s zero-day vulnerabilities that have been patched accordingly with its custom hotfix. A hotfix is an emerging software the cybersecurity company developed to address its cyberattack issue especially zero-day defaults.

Also worth reading
Hackers Alerted Odido About A breach Exposing 6.2M Customers’ Data SolarWinds’ Cyberattack Unstretched Towards Microsoft, NVIDIA, Cisco, And Other Tech Companies Microsoft Launches MAI-Cyber-1-Flash As AI Security Becomes A Model Race Iran Internet Blackout Deepens Amid Reported US-Israel Cyberattacks 42,000 Impacted in Ingram Micro Ransomware Attack Chinese Cyberattacks on Taiwan Hit 2.6M Daily in 2025

In response to the SolarWinds report, Microsoft consented about likely zero-day vulnerabilities attached to Serv-U’s Secure Shell, SSH, a protocol that appears to be patched but not. The vulnerability of this software can permit bad actors to access future attacks if the SSH protocol connectivity is linked with the internet.

Techbooky suggests anyone running on the older Serv-U FTP server is advised to make immediate upgrades to patch up default. Else the traumatic stress SolarWinds experience at the initial hack is likely to iterate via these vulnerabilities.

Remember, SolarWinds was attacked toward the end of 2020 — at the time the Russian’s believed to orchestrate the attack but the newly discovered DEV-0322 depicts it’s an Asian-originated SolarWinds hack. The outcome exposed several government agencies and private business activities.

According to Microsoft, the DEV-0322 has habitually gone after government-affiliated entities and using VPN as a soluble means to cover their tracks while it discombobulates the SolarWinds router and tech infrastructure. Other hack groups like Cozy Bear have breached Microsoft’s and SolarWinds networks via the DEV-0322 hack tool.

Related Reading

More contextual TechBooky stories selected from tags, categories and article context.

  • Nigeria Bureau of Statistics Data breach
    Hackers Compromised The NBS Sever, But No Ransomware Yet
  • HORl_VBaYAAfBVU
    Microsoft Launches MAI-Cyber-1-Flash As AI Security…
  • shutterstock_2350808261
    Microsoft Notifies Users of the Mandatory 2FA Deadline
  • nhs_tech_provider_dxs_admits_breach_of_office_serv_edited_1766078164
    NHS England Tech Supplier Confirms Data Breach
  • im-26478194
    Cyera Buys Oasis Security For $1B As AI Agents…
  • Microsoft_passwordless
    Microsoft Will Roll Out Passkey Support For All Consumers
  • Azure-White
    Microsoft Cloud Growth Jumps As Azure Gives AI…
  • microsofts-surface-duo-dualscreen-androi-5f1f3d057e8c350ae07dd862-1-jul-28-2020-15-24-20-poster
    Microsoft Patch Tuesday Fixes 63 Bugs, 1 Zero-Day
Keep Reading Smarter

Search TechBooky with AI

Use TechBooky's AI Search to explore the context behind this story and related coverage across the site.

Try AI Search
More On This Topic
Security
Follow TechBooky

Follow TechBooky for more technology stories and newsroom updates.

f Facebook X X in LinkedIn ig Instagram wa WhatsApp

Tags: cyber securitycyberattackMicrosoft Russian hacksolarwinds
Emeka Eni

Emeka Eni

I am a tech enthusiast, creating contents, graphic designer and am Africa.

Search TechBooky
Open TechBooky AI Search Try the AI Assistant

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • Samsung Memory Warning Shows AI Chip Shortage May Last Into 2028 August 1, 2026
  • Siri AI Paywall Would Make Apple Intelligence A Services Business July 31, 2026
  • Mirage Kitten Malware Shows Cyber-Espionage Pressure Across Africa And MEA July 31, 2026
  • Snapchat Stops Paying Fully AI-Generated Spotlight Videos As AI Slop Spreads July 31, 2026
  • Anthropic Says Claude Models Breached Real Systems During Cyber Tests July 31, 2026
  • DeepSeek V4 Flash API Raises The Pressure In The AI Agent Price War July 31, 2026
  • MTN Nigeria Fintech Revenue Slump Shows Airtime Lending Risk July 31, 2026
  • Google Earth AI Image Tool Shows How Fake Satellite Proof Could Spread July 31, 2026
  • Lesotho Launches National CSIRT As Cybersecurity Becomes Core Digital Infrastructure July 31, 2026
  • Gabon Data Centre Push Shows Africa Digital Sovereignty Is Becoming Infrastructure July 31, 2026
  • Inforcer Raises $50M As AI Turns Microsoft 365 Security Into An MSP Problem July 31, 2026
  • Rwanda 3G Shutdown Shows Africa Mobile Money Needs A Careful 4G Migration July 31, 2026

Browse Archives

August 2026
M T W T F S S
 12
3456789
10111213141516
17181920212223
24252627282930
31  
« Jul    

Quick Links

  • About TechBooky
  • Advertise With TechBooky
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • AI Search
  • About TechBooky
  • Advertise With TechBooky
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.