Hackers Targeting Microsoft SharePoint Servers

Contact Your Elected Officials

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

โ€œThis exploitation activity, publicly reported as โ€˜ToolShell,โ€™ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,โ€ CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoftโ€™s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Seventy-one, But Iโ€™m Still Not Done, LEARNING!

My favorite activities in life are thinking (learning) and laughing and it's been found that a โ€œsense of humorโ€ is a sign of higher intelligence.

Good Night And Good Riddance To The Late Show

Shocking announcement that The Late Showย with Stephen Colbert will officially cease production rocked the Democratic Party, as Colbert is a staunch supporter.

Coldplay Concert Offers Us Garden of Eden Moment

Adultery is still illegal in 10 states. It was illegal in 15 states just 30 years ago. There was a time when adultery was a crime in all 50 states!

Uncle SLICโ€™s lingering loans

School may be out for the summer, but the Student Loan Industrial Complex (SLIC) chugs along no matter what time of the year it is.

Epsteinโ€™s Island

The miscommunication by Trump Admin officials on Epstein rival any of the comedic exchanges between the Skipper and Gilligan, without the laughs.

Secretary Noem Hosts Press Conference to Provide Updates on the Shooting of Customs and Border Protection Officer

Dept. of Homeland Security Sec Kristi Noem delivered update in NY following the shooting of an off-duty U.S. Customs and Border Protection officer.

Harvard, Trump Admin Face Off in Court Over $2.6 Billion Funding Freeze

Harvard Univ and the Trump admin faced off in court as each sought to convince judge in ongoing battle over billions of dollars in funding for school.

ICE Director Sends Warning to Companies Employing Illegal Immigrants

Acting director of ICE signaled crackdown on companies hiring illegal immigrants saying agents will arrest anyone in country illegally, regardless of criminal record.

FAA Probes Midair Incident Involving SkyWest Jet, B-52 Bomber

FAA is investigating a Delta Connection jets โ€œaggressive maneuverโ€ to avoid a midair collision with a U.S. Air Force B-52 bomber near Minot, ND.

Gabbard Says Obama-Era Officials Will Face Criminal Referral Over 2016 Election Documents

DNI Tulsi Gabbard has made criminal referrals to the FBI and DOJ related to an investigation into alleged Russia collusion involving President Trump.

Commerce Secretary Says US Still Eyeing 10 Percent Baseline Tariff

Commerce Secretary Howard Lutnick said the US is still aiming to leave a 10 percent baseline tariff on many smaller countries

Trump Signs Order to Reclassify Noncareer Federal Workers

President Trump signed an EO to create a new classification of noncareer federal workers whose roles are focused on implementing presidentโ€™s policy agenda.

Trump Pledges to Prevent US Central Bank Digital Currency

CBDC will not be allowed in the Us, President Trump said at a White House event, promising to take legislative action to prevent such a situation.
spot_img

Related Articles