Hackers Targeting Microsoft SharePoint Servers

5Mind. The Meme Platform

Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted, the U.S. Cyber Security and Infrastructure Defense Agency said.

Hackers are attacking on-premises Microsoft SharePoint server vulnerabilities, the U.S. Cyber Security and Infrastructure Defense Agency (CISA) announced in a July 20 report.

SharePoint Servers are used by organizations to create a private intranet service that builds websites, manages document sharing, and supports other collaborative efforts within the company.

“This exploitation activity, publicly reported as ‘ToolShell,’ provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content, including file systems and internal configurations, and execute code over the network,” CISA said, adding that the scope and impact of the new remote code execution (RCE) attack is being assessed.

Microsoft acknowledged the issue a day earlier. In a July 19 guidance report, the company said the exploitation attempt applied to SharePoint servers only. Cloud-based SharePoint Online in Microsoft 365 is a different system and is not impacted.

The whole SharePoint suite is used by more than 200,000 organizations and 190 million people worldwide, according to the company.

The July security update only partially addresses existing vulnerabilities, Microsoft said. New security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 have been released.

Customers are advised to apply system updates immediately to ensure protection. Security updates for SharePoint 2016 users are not yet released.

Microsoft posted a list of ways that customers can mitigate the attacks. They include installing the latest security updates, using supported versions of on-premises SharePoint Server, making sure the Antimalware Scan Interface is turned on and configured correctly in combination with an antivirus solution, deploying services like Microsoft Defender for Endpoint protection, and rotating SharePoint Server ASP.NET machine keys.

More technical details for advanced hunting techniques and other mitigation efforts are on the Microsoft website.

CISA Recommendations

To reduce risks associated with the RCE exploitation attempt, CISA has several recommendations for organizations. It reiterated Microsoft’s guidance on activating Antimalware Scan Interface (AMSI) and MS Defender on all servers.

By Naveen Athrappully

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

The Pope Has An Epiphany

Pope Leo has not forcefully denounced Iran despite its support for terrorist groups responsible for killing innocent people worldwide.

First They Came For the Sheep, and I Did Not Speak Out…

“First they came for the sheep, and I did not speak out because I’m not a sheep.

E Pluribus Unum: The Architecture of Unity

The nation’s historic motto, E pluribus unum—out of many, one—recognizes plurality but insists that unity must ultimately emerge from it.

A Blue-White rebuild

The 2026 Blue-White game will serve as a public unveiling, not a traditional scrimmage as Penn State and Beaver Stadium undergo major reconstruction.

Numbers Game

Life is a numbers game, but gaming the numbers is not the same thing, it is the act of using numbers or cooking the books to obtain an outcome.

USDA Disqualifies 1,562 Retailers, Prevents $835 Million in Fraudulent SNAP Transactions

In a federal fraud crackdown, the USDA Food and Nutrition Service has disqualified 1,562 SNAP-linked retailers and disabled 760 illegal POS devices since Oct. 1, 2025.

‘Tax the Rich’: Mamdani, Economist Zucman Push Global Wealth Tax

On Tax Day, New York City Mayor Zohran Mamdani hosted a public forum with two noted economists, calling for a tax on the “super-rich.”

California Lawmaker Defends Bill Dubbed ‘Stop Nick Shirley Act’ by Opponents

Bill dubbed ‘Stop Nick Shirley Act’ would “criminalize investigative journalism with misdemeanors, $10,000 fines, imprisonment, and content takedown.”

Appeals Court Allows Construction of White House Ballroom to Continue

A U.S. appeals court put on hold a lower court order that had halted construction of the White House ballroom, allowing the project to proceed for now.

‘It Was Literally That Quick!’: Joe Rogan Praises Trump’s Psychedelic Drug Research Executive Order

During a press conference on Saturday, podcaster Joe Rogan praised President Trump's actions on psychedelic drug research.

Trump Says Pam Bondi is Out as His Attorney General

President Trump says Pam Bondi is out as his Attorney General. Bondi will be replaced by her deputy Todd Blanche, who will serve as acting attorney general.

Trump Signs Order Imposing 100 Percent Tariffs on Certain Imported Pharmaceutical Drugs

President Donald Trump signed executive orders on Thursday raising levies on some medications and refining calculations on steel tariffs.
spot_img

Related Articles

Popular Categories

MAGA Business Central