Microsoft Sharepoint server vulnerability puts an estimated 10,000 organizations at risk

A major zero-day security vulnerability in Microsoft's widely used SharePoint server software has been exploited by hackers, causing chaos within businesses and government agencies, multiple outlets have reported. Microsoft announced that it had released a new security patch "to mitigate active attacks targeting on-premises [and not online] servers," but the breach has already effected universities, energy companies, federal and state agencies and telecommunications firms. 

The SharePoint flaw is a serious one, allowing hackers to access file systems and internal configurations or even execute code, to completely take over systems. The flaw could put more than 10,000 companies at risk, Cybersecurity company Censys told The Washington Post. "It's a dream for ransomeware operators, and a lot of attackers are going to be working this weekend as well." Google's Threat Intelligence Group added that the flaw allows "persistent, unauthenticated access that can bypass future patching." 

The US Cybersecurity and Infrastucture Security agency (CISA) said that any servers affected by the exploit should be disconnected from the internet until a full patch arrives. It added that the impact of the attacks is still being probed.  

The vulnerability was first spotted by Eye Security, which said the flaw allows hackers to access SharePoint servers and steal keys in order to impersonate users or services. "Because SharePoint often connects to core services like Outlook, Teams, and OneDrive, a breach can quickly lead to data theft, password harvesting, and lateral movement across the network," Eye Security wrote in a blog post

The FBI is aware of the attack and is working closely with government and private sector partners. It's not immediately clear which groups are behind the zero-day hacks. In any case, the attack is liable to put Microsoft under the microscope again. A 2023 breach of Exchange Online mailboxes led the White House's Cyber Safety Review Board to declare that Microsoft's security culture was "inadequate." 

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/microsoft-sharepoint-server-vulnerability-puts-an-estimated-10000-organizations-at-risk-120006463.html?src=rss https://www.engadget.com/cybersecurity/microsoft-sharepoint-server-vulnerability-puts-an-estimated-10000-organizations-at-risk-120006463.html?src=rss
Created 10h | Jul 21, 2025, 2:20:52 PM


Login to add comment

Other posts in this group

Google shows off the Pixel 10 less than a month before its launch

As is tradition, Google has already shown off at least one of its new Pixel phones before it's announced. The front page of the Google Store currently features a short video

Jul 21, 2025, 9:20:04 PM | Engadget
The fan-made mod of the original Fallout game has a real trailer and it looks sick

Fallout: Bakersfield is a fan-made mod of the 1990s original that's been on our radar for a few years. We got a little teaser

Jul 21, 2025, 6:50:25 PM | Engadget
Google adds separate work and personal accounts to Chrome on iOS

Google has introduced new features for Chrome on iOS that help users bifurcate work and personal data by using separate Google accounts. As more employers implement bring your own device (BYOD) pol

Jul 21, 2025, 6:50:24 PM | Engadget
OpenAI is getting closer with the UK government

The UK government has announced

Jul 21, 2025, 6:50:22 PM | Engadget
This Anker power bank that can charge a laptop is 30 percent off right now

Prime Day has come and gone, but power bank stalwart Anker still has some compelling deals to keep your devices charged while on the go. Among these is the

Jul 21, 2025, 4:30:25 PM | Engadget
Amazon includes a free $300 gift card when you pre-order the Samsung Galaxy Z Fold 7

We are mere days away from the official launch of the Samsung Galaxy Z Fold 7 on July 25. Amazon is enticing customers to try out the foldable handset by throwing in a $300 gift card

Jul 21, 2025, 4:30:24 PM | Engadget