Hackers Targeting Microsoft SharePoint Servers

5Mind. The Meme Platform

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

“This exploitation activity, publicly reported as ‘ToolShell,’ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,” CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoft’s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

TDS in American Nurses

Is stage four Trump Derangement Syndrome being seen in liberal nurses like Alex Pretti, Lexi Lawler, and Malinda Cook?

Dem’s Fighting Words!

Politicians can be some of the most two-faced creatures...

The Rocks and the Sea

The inexorable action of the tide works relentlessly against...

FBI Raids Fulton County Election Center

Last month we wrote about the findings of a...

James O’Keefe Infiltrates Anti-ICE Protest!

A new video was dropped by hidden camera journalist...

Gov. Walz, Minnesota AG Will Give Sworn Testimony About Fraud to Oversight Committee

Two top Minnesota officials, Walz and Ellison, have confirmed they will testify publicly about their state’s alleged fraud scandals next month.

Hochul Proposes Ban on Local Police Agreements With ICE Under 287(g) Program

Hochul proposed the Local Cops, Local Crimes Act to void New York’s 287(g) agreements and bar local jails and police from aiding civil immigration enforcement.

Judge Rules Out Death Penalty in Federal Case Against Luigi Mangione

A federal judge ruled that prosecutors may not seek the death penalty against Mangione, accused of killing UnitedHealthcare CEO Brian Thompson.

DOJ Releasing 3 Million Pages, Hundreds of Thousands of Photos of Epstein Files: Deputy AG

DOJ is releasing 3 million pages, 180,000 images, and 2,000 videos related to late convicted sex offender and accused sex trafficker Jeffrey Epstein.

What to Know About Kevin Warsh, Trump’s Nominee for Fed Chair

President Donald Trump selected former Federal Reserve Governor Kevin Warsh as the next head of the U.S. central bank.

Trump Nominates Colin McDonald as Head of New Fraud Division at Justice Department

President Trump announced Colin McDonald as head for the new national fraud enforcement division of the DOJ in a post on Truth Social.

Trump Touts Upcoming Launch of ‘Trump Accounts’

The Treasury Dept. will host a summit marking the launch of Trump Accounts, new child savings accounts created by the One Big Beautiful Bill Act.

Trump Signals Flexibility on South Korea Tariffs

President Trump said the U.S. will negotiate a solution with South Korea after announcing higher tariffs on the ally’s exports a day earlier.
spot_img

Related Articles