Microsoft hit with SharePoint attack — one version still vulnerable

Microsoft hit with SharePoint attack — one version still vulnerable

Microsoft has issued a stark warning about ongoing attacks targeting its SharePoint collaboration software, signaling a significant threat to organizations worldwide. Security researchers have identified a vulnerability that allows unauthorized access to systems, giving malicious actors the ability to execute harmful code across networks. The Cybersecurity and Infrastructure Security Agency (CISA) released a statement on Sunday, highlighting that the extent and impact of the breach are still under evaluation. However, they cautioned that the situation poses a serious risk to organizations using the affected software. In response, Microsoft rolled out fixes for two versions of SharePoint late Sunday, but a 2016 version remains unpatched, with the company actively working on a solution. Palo Alto Networks has reported that this breach may have affected thousands of organizations globally, emphasizing the real and pressing nature of the exploits. Microsoft clarified that the attacks are limited to on-premises SharePoint servers, excluding cloud-based services like Microsoft 365. SharePoint is widely utilized by businesses for document storage and collaboration, making this vulnerability particularly alarming. Researchers from European cybersecurity firm Eye Security, who first detected the flaw, warned that even after applying a patch, hackers could still impersonate users or services. The interconnected nature of SharePoint with other Microsoft services, such as Outlook and Teams, raises the stakes significantly. Eye Security's experts noted that a breach could rapidly result in data theft and password harvesting. In a separate incident, Alaska Airlines experienced a temporary halt in its ground operations for about three hours due to an IT outage, which was lifted around 2 a.m. EST. It remains unclear if this outage is connected to the SharePoint attack.

Sources : CNBC

Published On : Jul 21, 2025, 14:25

Gadgets
Acerpure Pro Classic AP352: The Affordable Air Purifier That Delivers

The Acerpure Pro Classic (AP352) emerges as a budget-friendly air purifier that aims to make clean air accessible to eve...

Business Today | Mar 08, 2026, 10:45
Acerpure Pro Classic AP352: The Affordable Air Purifier That Delivers
Automotive
Rivian's Bold Strategy: Racing Towards R2 Launch Amidst Competitive Landscape

In the ever-evolving realm of transportation technology, Rivian is gearing up for a significant moment as it prepares to...

TechCrunch | Mar 08, 2026, 16:35
Rivian's Bold Strategy: Racing Towards R2 Launch Amidst Competitive Landscape
Startups
Sundar Pichai's Massive $692 Million Compensation Package Unveiled

Sundar Pichai, the CEO of Google, is set to receive a staggering pay package potentially valued at $692 million. Accordi...

TechCrunch | Mar 08, 2026, 24:35
Sundar Pichai's Massive $692 Million Compensation Package Unveiled
Startups
Navigating Pentagon Relations: A Strategic Playbook for Tech CEOs

In a surprising move, the Pentagon has blacklisted Anthropic, the AI startup founded by Dario Amodei, citing supply chai...

Business Insider | Mar 08, 2026, 15:40
Navigating Pentagon Relations: A Strategic Playbook for Tech CEOs
AI
OpenAI Robotics Leader Resigns Over Pentagon Deal Controversy

Caitlin Kalinowski, who headed the robotics division at OpenAI after joining from Meta in 2024, has announced her resign...

Business Insider | Mar 07, 2026, 17:45
OpenAI Robotics Leader Resigns Over Pentagon Deal Controversy
View All News