Microsoft hit with SharePoint attack — one version still vulnerable

Microsoft hit with SharePoint attack — one version still vulnerable

Microsoft has issued a stark warning about ongoing attacks targeting its SharePoint collaboration software, signaling a significant threat to organizations worldwide. Security researchers have identified a vulnerability that allows unauthorized access to systems, giving malicious actors the ability to execute harmful code across networks. The Cybersecurity and Infrastructure Security Agency (CISA) released a statement on Sunday, highlighting that the extent and impact of the breach are still under evaluation. However, they cautioned that the situation poses a serious risk to organizations using the affected software. In response, Microsoft rolled out fixes for two versions of SharePoint late Sunday, but a 2016 version remains unpatched, with the company actively working on a solution. Palo Alto Networks has reported that this breach may have affected thousands of organizations globally, emphasizing the real and pressing nature of the exploits. Microsoft clarified that the attacks are limited to on-premises SharePoint servers, excluding cloud-based services like Microsoft 365. SharePoint is widely utilized by businesses for document storage and collaboration, making this vulnerability particularly alarming. Researchers from European cybersecurity firm Eye Security, who first detected the flaw, warned that even after applying a patch, hackers could still impersonate users or services. The interconnected nature of SharePoint with other Microsoft services, such as Outlook and Teams, raises the stakes significantly. Eye Security's experts noted that a breach could rapidly result in data theft and password harvesting. In a separate incident, Alaska Airlines experienced a temporary halt in its ground operations for about three hours due to an IT outage, which was lifted around 2 a.m. EST. It remains unclear if this outage is connected to the SharePoint attack.

Sources : CNBC

Published On : Jul 21, 2025, 14:25

AI
Reflection AI Strikes Major $1 Billion Partnership with Nebius for Advanced Computing

Reflection AI, a rising U.S. startup focused on developing open AI models, has secured an impressive $1 billion computin...

TechCrunch | Jul 14, 2026, 15:15
Reflection AI Strikes Major $1 Billion Partnership with Nebius for Advanced Computing
AI
The Shift in AI Development: Open Models Surge Ahead

This summer, the AI landscape witnessed a significant shift as attention turned from high-profile frontier models to the...

TechCrunch | Jul 14, 2026, 14:45
The Shift in AI Development: Open Models Surge Ahead
AI
New York Enacts Groundbreaking Year-Long Ban on Large AI Data Centers

In a historic move, New York State Governor Kathy Hochul has signed an executive order imposing a one-year moratorium on...

CNBC | Jul 14, 2026, 17:45
New York Enacts Groundbreaking Year-Long Ban on Large AI Data Centers
Startups
Jim Cramer Urges Investors to Ignore Apple Sell-Off and Embrace New Chip Stock

In a recent statement, financial analyst Jim Cramer advised investors not to react hastily to calls for selling Apple st...

CNBC | Jul 14, 2026, 16:05
Jim Cramer Urges Investors to Ignore Apple Sell-Off and Embrace New Chip Stock
AI
Limited Nvidia H200 AI Chip Shipments to China Raise Questions on Future Exports

A senior U.S. trade representative revealed on Tuesday that the number of Nvidia's H200 AI chips dispatched to China and...

CNBC | Jul 14, 2026, 17:05
Limited Nvidia H200 AI Chip Shipments to China Raise Questions on Future Exports
View All News