TechBooky AI Assistant
TechBooky AI Assistant
👋 Welcome to TechBooky AI Assistant

I can help with:
🔎 Tech News
🤖 AI Topics
💻 Gadgets
☁️ Cloud
✍️ Guest Posts
📢 Advertising
🔗 Backlinks
📩 Newsletter
  • AI Search
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise With TechBooky
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home Security

Microsoft Reveals DEV-0322 Originated The Zero-day Vulnerabilities On SolarWinds Network.

...Cozy Bear also took advantage of the Asian Leaked zero-day program on Americans.

Emeka Eni by Emeka Eni
July 16, 2021
in Security
Share on FacebookShare on Twitter
Share this story

Send it to someone who should read it.

f Facebook X X in LinkedIn wa WhatsApp tg Telegram @ Email
In Brief
  • Microsoft is relentless about upgrading its software and security service.
  • As expected, the MSTIC (Microsoft Threat Intelligence Center) revealed the latest discoveries related to the SolarWinds previous hack that believed the Russian’s are the prime and...
  • The MSTIC reportedly discovered a new group they called “DEV-0322” that attacked the cyber-security company, aiming to infiltrate and steal information from SolarWinds clients.

Microsoft is relentless about upgrading its software and security service. As expected, the MSTIC (Microsoft Threat Intelligence Center) revealed the latest discoveries related to the SolarWinds previous hack that believed the Russian’s are the prime and only suspect.

The MSTIC reportedly discovered a new group they called “DEV-0322” that attacked the cyber-security company, aiming to infiltrate and steal information from SolarWinds clients. It is worth noting that the cybersecurity company has several high profiled clients under its security network, especially the U.S. defense agency.

According to MSTIC, the perpetrators aimed at stealing SolarWinds software called “Serv-U FTP” — this software is presumed to boost the hacker tool to bypass the cyber-security company’s firewall and to access its high profiled clients records.

The DEV-0322 exploited a zero-day default the software company recently spotted during its routine cyber threat scan. The MSTIC used its custom Microsoft 365 Defender and detected anomalous malicious code that depicted the hackers attempted to register themselves as an administrator via Serv-U. Check Microsoft’s blog for more details about Serv-U and other malicious acts via the zero-day vulnerability.

SolarWinds recently published an in-depth analysis about Serv-U’s zero-day vulnerabilities that have been patched accordingly with its custom hotfix. A hotfix is an emerging software the cybersecurity company developed to address its cyberattack issue especially zero-day defaults.

Also worth reading
Hackers Alerted Odido About A breach Exposing 6.2M Customers’ Data Iran Internet Blackout Deepens Amid Reported US-Israel Cyberattacks

In response to the SolarWinds report, Microsoft consented about likely zero-day vulnerabilities attached to Serv-U’s Secure Shell, SSH, a protocol that appears to be patched but not. The vulnerability of this software can permit bad actors to access future attacks if the SSH protocol connectivity is linked with the internet.

Techbooky suggests anyone running on the older Serv-U FTP server is advised to make immediate upgrades to patch up default. Else the traumatic stress SolarWinds experience at the initial hack is likely to iterate via these vulnerabilities.

Remember, SolarWinds was attacked toward the end of 2020 — at the time the Russian’s believed to orchestrate the attack but the newly discovered DEV-0322 depicts it’s an Asian-originated SolarWinds hack. The outcome exposed several government agencies and private business activities.

According to Microsoft, the DEV-0322 has habitually gone after government-affiliated entities and using VPN as a soluble means to cover their tracks while it discombobulates the SolarWinds router and tech infrastructure. Other hack groups like Cozy Bear have breached Microsoft’s and SolarWinds networks via the DEV-0322 hack tool.

Related Reading

Explore more TechBooky stories from the latest and category sections below.

Keep Reading Smarter

Search TechBooky with AI

Use TechBooky's AI Search to explore the context behind this story and related coverage across the site.

Try AI Search
More On This Topic
Security
Follow TechBooky

Follow TechBooky for more technology stories and newsroom updates.

f Facebook X X in LinkedIn ig Instagram wa WhatsApp

Tags: cyber securitycyberattackMicrosoft Russian hacksolarwinds
Emeka Eni

Emeka Eni

I am a tech enthusiast, creating contents, graphic designer and am Africa.

Search TechBooky
Open TechBooky AI Search Try the AI Assistant

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • What Are Orbital Data Centres, And Can They Really Solve The AI Compute Crunch? July 19, 2026
  • Dave Eggers Took His ChatGPT Warning Directly Inside OpenAI July 19, 2026
  • Anthropic And Meta Reportedly Discuss US$10bn AI Compute Deal July 19, 2026
  • SpaceX Is In Talks To Supply Pentagon AI Projects With Cloud Compute July 19, 2026
  • Kimi K3 Is Turning Into A Bigger AI Market Headache Than One Leaderboard July 18, 2026
  • Apple And Google Ordered To Remove AI Nudify Apps From App Stores July 18, 2026
  • TikTok Tests AI Likeness Detection Tool To Help Creators Find Deepfakes July 18, 2026
  • Egypt Deepens World Bank Partnership Around AI, Skills And Digital Infrastructure July 17, 2026
  • Howzit AI Wants To Be A Local ChatGPT For South African Languages July 17, 2026
  • Launch Africa Ventures Closes 15 New Fund II Investments In 2026 July 17, 2026
  • Apple And Nvidia Keep Swapping The Most Valuable Company Crown July 17, 2026
  • Apple Overtakes Nvidia To Become The World’s Most Valuable Company July 17, 2026

Browse Archives

July 2026
M T W T F S S
 12345
6789101112
13141516171819
20212223242526
2728293031  
« Jun    

Quick Links

  • About TechBooky
  • Advertise With TechBooky
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • AI Search
  • About TechBooky
  • Advertise With TechBooky
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.