Microsoft warns of ‘active attacks’ on SharePoint collaboration software; businesses hit

HomeTechnology NewsMicrosoft warns of ‘active attacks’ on SharePoint collaboration software; businesses hit

Microsoft added that this attack applies only to on-premise SharePoint servers and not those in the cloud, like Microsoft 365.

Profile image

By CNBCTV18.com July 22, 2025, 4:21:15 AM IST (Published)

Microsoft warns of 'active attacks' on SharePoint collaboration software; businesses hit

“Active attacks” have targeted Microsoft’s SharePoint collaboration software, the company warned governments and businesses worldwide on late on Monday, July 21. SharePoint is generally used by global businesses and organisations to store and collaborate on documents.

According to the Cybersecurity and Infrastructure Security Agency, the vulnerability provides unauthenticated access to systems and full access to SharePoint content, which enables bad actors to execute code over the network.

The CISA has warned that this posses a risk to organisations, while the impact of the attack continues to be assessed.

Microsoft issued fixes for customers to apply to two versions of the SharePoint software and said that it is working towards developing a patch to fix the 2016 version.

Researchers at Palo Alto Networks believe that the hack is likely to have reached thousands of organisations globally. “The exploits are real, in-the-wild and pose a serious threat,” they added.

Microsoft added that this attack applies only to on-premise SharePoint servers and not those in the cloud, like Microsoft 365.

European Cybersecurity firm Eye Security, who claims to have first identified the flaw, said that the vulnerability is concerning, especially because it allows hackers to impersonate the user or services, even after the SharePoint server is patched.

“SharePoint servers often connect to other Microsoft services such as Outlook and Teams, meaning such a breach can “quickly” lead to data theft and password harvesting, Eye Security researchers said,” Eye Security Researchers said.

Vaisha Bernard, the Eye Security’s chief hacker and co-owner said that after scanning about 8,000 SharePoint servers, he has so far identified at least 50 that were successfully compromised.

Read More
Hormaz Fatakia

Latest

Nestory Irankunda scores Australia’s first World Cup goal against Turkiye

Nestory Irankunda buried Australia’s opening goal of the 2026 FIFA World Cup on June 14, finishing a counter-attack in the 27th minute against Turkiye in Vancouver. At 20 years old, he became the youngest player in Socceroos history to score at a World Cup. The goal gave Australia a 1-0 lead in their Group D

Carlo Ancelotti takes responsibility for Brazil’s 1-1 draw with Morocco as crypto fan tokens enter the World Cup spotlight

Brazil opened their 2026 FIFA World Cup campaign with a 1-1 draw against Morocco on June 13, and Carlo Ancelotti accepted full responsibility for the tactical shortcomings that left the five-time champions splitting points in their Group C opener. Ancelotti promised improvement and reminded everyone that you don’t win a World Cup in your first

Scotland defeats Haiti 1-0 in World Cup opener, tops Group C

Scotland picked up their first World Cup victory in 28 years on June 13, beating Haiti 1-0 in their Group C opener at the 2026 FIFA World Cup. John McGinn scored the only goal of the match in the 28th minute, pouncing on a rebound after Haitian goalkeeper Johny Placide saved an initial effort from

Pyth Network Targets Bloomberg’s $50 Billion Market-Data Empire

Pyth Network is pushing deeper into the more than $50 billion market for financial data, launching 24/7 index products across metals, oil, and U.S. equities as it positions its onchain price feeds against incumbents like Bloomberg. Key Takeaways Pyth Network launched 24/7 indices for metals, oil, and U.S. equities, adopted by Coinbase and Kraken. Euronext

Newsletter

Don't miss

Nestory Irankunda scores Australia’s first World Cup goal against Turkiye

Nestory Irankunda buried Australia’s opening goal of the 2026 FIFA World Cup on June 14, finishing a counter-attack in the 27th minute against Turkiye in Vancouver. At 20 years old, he became the youngest player in Socceroos history to score at a World Cup. The goal gave Australia a 1-0 lead in their Group D

Carlo Ancelotti takes responsibility for Brazil’s 1-1 draw with Morocco as crypto fan tokens enter the World Cup spotlight

Brazil opened their 2026 FIFA World Cup campaign with a 1-1 draw against Morocco on June 13, and Carlo Ancelotti accepted full responsibility for the tactical shortcomings that left the five-time champions splitting points in their Group C opener. Ancelotti promised improvement and reminded everyone that you don’t win a World Cup in your first

Scotland defeats Haiti 1-0 in World Cup opener, tops Group C

Scotland picked up their first World Cup victory in 28 years on June 13, beating Haiti 1-0 in their Group C opener at the 2026 FIFA World Cup. John McGinn scored the only goal of the match in the 28th minute, pouncing on a rebound after Haitian goalkeeper Johny Placide saved an initial effort from

Pyth Network Targets Bloomberg’s $50 Billion Market-Data Empire

Pyth Network is pushing deeper into the more than $50 billion market for financial data, launching 24/7 index products across metals, oil, and U.S. equities as it positions its onchain price feeds against incumbents like Bloomberg. Key Takeaways Pyth Network launched 24/7 indices for metals, oil, and U.S. equities, adopted by Coinbase and Kraken. Euronext

Macron and Trump test their bruised bromance at G7 summit

For help please visit help.ft.com. We apologise for any inconvenience. The following information can help our support team to resolve this issue. Reason Challenge Request ID a0ba469e68afe135 Status Code 403

Your business texts could look like scam messages from July 1 if you don’t act now

From July 1, any branded SMS your business sends without a registered sender ID will be labelled “Unverified” and grouped with scam messages.  What’s happening: From 1 July 2026, any business or organisation that sends SMS using a branded name, such as “MyShop” or “AcmeServices”, instead of a phone number, must have that sender ID

Business groups are fighting Labor’s CGT changes. Here is where SMEs stand

Labor’s most contested tax reform in a generation cleared its first formal hurdle on Thursday and immediately ran into organised resistance. Treasurer Jim Chalmers introduced the government’s tax reform legislation to the House of Representatives on 28 May, bundling together four budget measures: the capital gains tax overhaul, new limits on negative gearing, a $250

Meet the most influential business owners from Southwest Nigeria

This article spotlights the most influential business owners from Southwest Nigeria, adjudged by their dominance in their respective sectors of the economy where they operate. The post Meet the most influential business owners from Southwest Nigeria appeared first on Nairametrics...