Hackers Targeting Microsoft SharePoint Servers

5Mind. The Meme Platform

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

“This exploitation activity, publicly reported as ‘ToolShell,’ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,” CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoft’s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

2026: No charge required

Republicans are famous for their ability to snatch defeat from the jaws of victory as those acquainted with history know all too well.

What if Somali Fraud is About More than Votes?

What if Somali public aid abuse is more than vote-buying? Could it be a money-laundering scheme with Democrats and mainstream media skimming profits?

Bioterror Roundup: ‘Vax Pac’

Democrat dark money machine ActBlue opened spigot, urging boosted liberals to “debunk disinformation” by donating to Democrats amid vaccine debates.

The CIA Is Manipulating Trump Against Putin

Russia’s military intelligence shared drone route data with a US attaché, saying it proves the target was Putin’s presidential residence in Novgorod.

Shirley’s Somali Fraud News Story Explodes!

Several days ago we reported on independent journalist Nick Shirley, a 23 year old man who created a viral video exposing the fraud in Minnesota.

Somali Americans Face Audits for Potential Immigration Fraud

Gaining citizenship via fraud is grounds for denaturalization, said a federal official amid investigations into scams in Minnesota.

FBI Thwarts ISIS-Inspired New Year’s Eve Terror Plot in North Carolina

The FBI said it foiled an ISIS-inspired New Year’s Eve terror attack in North Carolina. Suspect Christian Sturdivant, 18, was arrested and charged.

New Year’s Gas Prices 23 Cents Cheaper Than a Year Ago in US

American drivers began the new year with further relief at the gas pump, as national average gasoline prices continued to edge lower.

SBA Suspends 6,900 Minnesota Borrowers Over Potential COVID-19 Loan Fraud

The SBA has suspended 6,900 Minnesota borrowers amid suspected fraudulent activity in the state’s pandemic-era loan programs, SBA Administrator Kelly Loeffler said.

Trump Vows to Intervene if Iran Kills Protestors

President Donald Trump on Jan. 2 vowed to come to the aid of protesters in Iran if they are killed by the regime in Tehran.

Trump Says Minnesota Fraud Investigation Only the Start, Suggests Other States Next

President Trump said his administration is going to continue to target alleged social services fraud in Minnesota, but said that it’s worse in other states.

Homeland Security Looks to Fast-Track Demolition of Dilapidated Buildings in DC

DHS is seeking an emergency demolition of historic buildings in the nation’s capital. “This is about safety,“ DHS Asst. Sec. Tricia McLaughlin said.

Trump Hosts Netanyahu at Mar-a-Lago for Bilateral Discussions

President Trump welcomed Israeli PM Netanyahu to Mar-a-Lago in Palm Beach, Florida, on Dec. 29 to discuss Gaza, Iran, Syria, and other matters.
spot_img

Related Articles

Popular Categories

MAGA Business Central