Hackers Targeting Microsoft SharePoint Servers

5Mind. The Meme Platform

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

“This exploitation activity, publicly reported as ‘ToolShell,’ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,” CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoft’s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Loser Democrats Failed Plots to “Get Trump”

Americans are tired of the Democrats criminal antics against Trump and they are mindful of God’s Ninth Commandment, “Thou shalt not bear false witness!”

The Quintessential American Pragmatist

America’s 47th president has already secured key legacy victories, each driven by a pragmatic approach, even as Ukraine peace efforts remain unresolved.

Fat Propaganda Roundup: Documenting the meatiest, juiciest cuts of “fat acceptance” propaganda from corporate and social media.

Donald Trump has turned fatphobia into official government policy, denying obese immigrants visas on the grounds that they are financial liabilities.

The Seditious Six ARE the Enemies Within

America has gotten soft thanks to a desire to appease the progressive liberals and this softening can actually lead to the downfall of a nation.

REP. JASMINE CROCKETT WINS 2025 TURKEY OF THE YEAR AWARD

“Our Ringside Politics shows annually award a ‘Turkey of the Year’ to a politician, bureaucrat, or celebrity especially deserving the distinction.”

Stefanik Says Defense Bill Will Require Disclosure of FBI Investigations of Politicians

A defense bill will require the FBI to notify federal candidates whenever it launches counterintelligence investigations, Rep. Elise Stefanik said.

Trump Says National Guard Will Deploy to New Orleans at Governor’s Request

National Guard troops will be deployed to New Orleans to assist local law enforcement at the request of Louisiana Gov. Jeff Landry, President Trump said.

4-Times-Removed Illegal Immigrant Arrested in Hit-and-Run Death of 11-Year-Old Boy

An illegal immigrant previously deported four times was arrested in California for a hit-and-run that killed an 11-year-old boy.

Judge Restricts Immigration Arrests in Nation’s Capital

A federal judge on Dec. 2 ordered the Trump admin to stop making warrantless immigration arrests in the DC without probable cause.

Trump to Roll Back Biden-Era Fuel Standards, Admin Says It Will Save Americans $109 Billion

President Trump will eliminate fuel standard regulations imposed by Biden when he signs an executive order on Dec. 3 in the Oval Office.

Trump Pardons Democratic Rep. Henry Cuellar

President Trump said he is pardoning Rep. Henry Cuellar. The pardon ends the case against the congressman, who was under federal indictment.

Trump Gives Most Direct Endorsement for Abolishing Federal Income Tax

Trump provided his most direct endorsement yet that he believes his tariff policies would generate enough revenue to abolish federal income taxes.

White House Provides Summary of Trump’s Medical ‘Advanced Imaging’ Results

Press Sec. Karoline Leavitt read a summary of Trump’s “advanced imaging” results from his visit to Walter Reed National Military Medical Center in October.
spot_img

Related Articles