Hackers Targeting Microsoft SharePoint Servers

Contact Your Elected Officials

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

โ€œThis exploitation activity, publicly reported as โ€˜ToolShell,โ€™ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,โ€ CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoftโ€™s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Seventy-one, But Iโ€™m Still Not Done, LEARNING!

My favorite activities in life are thinking (learning) and laughing and it's been found that a โ€œsense of humorโ€ is a sign of higher intelligence.

Good Night And Good Riddance To The Late Show

Shocking announcement that The Late Showย with Stephen Colbert will officially cease production rocked the Democratic Party, as Colbert is a staunch supporter.

Coldplay Concert Offers Us Garden of Eden Moment

Adultery is still illegal in 10 states. It was illegal in 15 states just 30 years ago. There was a time when adultery was a crime in all 50 states!

Uncle SLICโ€™s lingering loans

School may be out for the summer, but the Student Loan Industrial Complex (SLIC) chugs along no matter what time of the year it is.

Epsteinโ€™s Island

The miscommunication by Trump Admin officials on Epstein rival any of the comedic exchanges between the Skipper and Gilligan, without the laughs.

Gabbard Releases More Than 243,000 Pages of Martin Luther King Jr. Assassination Files

243,000+ pages of files related to 1968 killing of civil rights legend Dr. Martin Luther King, Jr., were declassified and released by the DNI Tulsi Gabbard.

LA Police Seek ID of Man Who Allegedly Shot Driver Accused of Crashing Into Nightclub Crowd

LA police detectives are asking the public to help identify man suspected of shooting driver of a car that plowed into a crowd outside a nightclub.

โ€˜Cosby Showโ€™ Star Malcolm-Jamal Warner Dies by Drowning at 54

American actor Malcolm-Jamal Warner died by drowning after being pulled out to sea by a rip current while vacationing in Costa Rica with his family.

US Housing Construction Starts Jump 4.6 Percent in May: Census

Privately owned housing starts in June were at a seasonally adjusted annual rate of 1,321,000 units, a 4.6 percent jump from May.

Gabbard Releases More Than 243,000 Pages of Martin Luther King Jr. Assassination Files

243,000+ pages of files related to 1968 killing of civil rights legend Dr. Martin Luther King, Jr., were declassified and released by the DNI Tulsi Gabbard.

Chinaโ€™s Rare-Earth Magnet Exports to US Surge in June Amid Trade Talks

Chinaโ€™s exports of rare-earth magnets to US saw a rebound in June, rising more than sevenfold from May, a sign of easing tensions amid trade war.

Gabbard Says Obama-Era Officials Will Face Criminal Referral Over 2016 Election Documents

DNI Tulsi Gabbard has made criminal referrals to the FBI and DOJ related to an investigation into alleged Russia collusion involving President Trump.

Commerce Secretary Says US Still Eyeing 10 Percent Baseline Tariff

Commerce Secretary Howard Lutnick said the US is still aiming to leave a 10 percent baseline tariff on many smaller countries
spot_img

Related Articles