The U.S. has issued an emergency warning after Microsoft said it caught China hacking into its mail and calendar server program, called Exchange.

The perpetrator, Microsoft said in a blog post, is a hacker group that the company has “high confidence” is working for the Chinese government and primarily spies on American targets. The latest software update for Exchange blocks the hackers, prompting the U.S. Cybersecurity and Infrastructure Security Agency to issue a rare emergency directive that requires all government networks do so.

CISA, the U.S.’s primary defensive cybersecurity agency, rarely exercises its authority to demand the entire U.S. government take protective steps to protect its cybersecurity. The move was necessary, the agency announced, because the Exchange hackers are able “to gain persistent system access.” All government agencies have until noon Friday to download the latest software update.

In a separate blog post, Microsoft Vice President Tom Burt wrote that the hackers have recently spied on a wide range of American targets, including disease researchers, law firms and defense contractors.

Contacted by email, a spokesperson for the Chinese embassy in Washington referred to recent comments by spokesperson Wang Wenbin.

“China has reiterated on multiple occasions that given the virtual nature of cyberspace and the fact that there are all kinds of online actors who are difficult to trace, tracing the source of cyber attacks is a complex technical issue,” Wang said.

“We hope that relevant media and company will adopt a professional and responsible attitude and underscore the importance to have enough evidence when identifying cyber-related incidents, rather than make groundless accusations.”

As the developer behind the most popular operating system in the world, Windows, Microsoft is regarded by Western cybersecurity experts as having exceptional insight into global hacking campaigns.

The campaign not only gave the hackers access to the victims’ emails and calendar invitations but to their entire network, Microsoft said. The hackers used four distinct “zero-day” exploits, which are rare digital tools that get their name because software developers are unaware of them, giving them no days to prepare a fix.

ESET, a Slovakian cybersecurity company, said on Twitter that its researchers had seen multiple hacker groups, not just the one Microsoft named in its announcement, also exploiting some of the same vulnerabilities in older versions of Exchange.

Source: | This article originally belongs to Nbcnews.com

You May Also Like

Evanston, Illinois, becomes first U.S. city to pay reparations to Blacks

EVANSTON, Ill. — Evanston, Illinois, on Monday became the first U.S. city…

Authorities reviewed 600 pieces of evidence before charging suspect in death of Jewish protester

Authorities examined 600 pieces of evidence and spoke to 60 witnesses before…

Wayfair to Open Three New Stores

Online home-goods seller Wayfair Inc. W 3.99% is making its biggest bet…

Condo Fatigue on the Upper West Side

Chris Giordano, president of the West 64th-67th Street Block Association, called it…