Hackers Targeting Microsoft SharePoint Servers

Contact Your Elected Officials

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

“This exploitation activity, publicly reported as ‘ToolShell,’ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,” CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoft’s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Why Democracy, not Caesar, is the answer to our problems

Caesar-style leadership wins quick public support but inevitably sparks passionate resistance, conflict, bloodshed, and lasting social destabilization.

WATCH: Barack Obama Foments Color Revolutions in Eastern Europe

Obama astroturfed “pro-democracy” movements in Poland and Hungary to pressure their govts into accepting mass migration and social engineering.

J.B. Pritzker Puts the ILLeagals in ILLinois

Illinois Gov. J.B. Pritzker, once a California native, has revived the old “ILL” abbreviation—this time in his promotion of ILLegal aliens.

James Franklin’s contract fallout

Penn State’s decision to fire head coach James Franklin after a disappointing 22–21 home loss to Northwestern will cost an estimated $56 million buyout. 

Trump’s Middle East Trip Led to Historic Breakthroughs

Trump’s bold, unconventional strategy helped end the Israel-Hamas war and set the stage for a more stable, prosperous Middle East.

Trump Commutes Sentence of Former Rep. George Santos

President Trump commuted ex-Rep. George Santos’s seven-year prison sentence for fraud and identity theft, ordering his immediate release.

Jack Smith Referred to DOJ for Misconduct Investigation and Possible Disbarment

Former special counsel Jack Smith was criminally referred to the DOJ by Republican lawmakers for alleged misconduct and possible disbarment.

AI Is a ‘Real and Mysterious Creature,’ Not a Predictable Machine, Anthropic Co-Founder Warns

Handling AI is like dealing with “a real and mysterious creature, not a predictable machine,” said Jack Clark, co-founder of Anthropic, at a Berkeley conference.

Trump Refiles $15 Billion Defamation Lawsuit Against New York Times After Court Dismissal

Trump refiled his $15 billion defamation lawsuit against The New York Times, Penguin Random House, and 3 reporters after judge dismissed the case.

Army Corps of Engineers to Pause $11 Billion in Projects During Shutdown: Vought

Russ Vought, director of the White House’s OMB, has added to the growing pile of federal projects paused during the government shutdown.

Trump Signs Executive Order Putting New Restrictions on Federal Hiring

Trump signed an executive order directing federal agencies to restrict hiring, with exceptions for immigration, security, and political appointees.

Trump Says He Has Authorized Covert CIA Operations in Venezuela

President Trump authorized covert CIA operations in Venezuela, expanding U.S. assets there to increase pressure on President Nicolás Maduro’s regime.

Trump Posthumously Awards Charlie Kirk the Presidential Medal of Freedom

President Trump posthumously awarded Charlie Kirk the Presidential Medal of Freedom in the White House Rose Garden on Oct 14, Charlie's birthday.
spot_img

Related Articles

Popular Categories

MAGA Business Central