Ransomware, SharePoint and Microsoft
Digest more
Microsoft has observed two named Chinese nation-state actors, Linen Typhoon and Violet Typhoon, exploiting vulnerabilities targeting internet-facing SharePoint servers. In addition, we have observed another China-based threat actor,
2don MSN
Microsoft contains SharePoint security wildfire, but questions linger about on-premises software
Microsoft contained a major SharePoint security flaw, amid fresh questions about the future of its legacy on-premises software.
Microsoft is issuing an emergency fix to close off a vulnerability in Microsoft’s SharePoint software that hackers have exploited to carry out widespread attacks on businesses and at least some federal agencies.
Microsoft has released security patches for the zero-day vulnerability chain dubbed ToolShell, capable of remote code execution on SharePoint, resulting in the exploitation of at least 54 organizations worldwide.
Microsoft confirms Chinese hackers exploited a SharePoint flaw; Patches now available. Cloud-based Microsoft 365 not affected.
New estimates regarding the recently-exploited Microsoft SharePoint vulnerabilities now evaluate that as many as 400 organizations may have been targeted.
5don MSN
Microsoft releases security update after hackers exploited SharePoint software to target U.S. users
The company is still working on an update to resolve issues for SharePoint 2016. SharePoint is a collaborative platform for Microsoft users to share and manage documents. The hack first occurred July 18,
3don MSN
Microsoft knew of SharePoint security flaw but failed to effectively patch it, timeline shows
A security patch Microsoft (MSFT.O), opens new tab released this month failed to fully fix a critical flaw in the U.S. tech giant's SharePoint server software, opening the door to a sweeping global cyber espionage effort,
Microsoft has now released a patch, but attackers were not idle over the weekend. Dozens of SharePoint installations fell victim of "ToolShell"
3d
ExtremeTech on MSNMicrosoft Tried—and Failed—to Fix SharePoint Security Flaw Earlier This Month
Though the vulnerability was first identified in May, it's taken more than two months for Microsoft to issue an effective fix.
1don MSN
Microsoft probing if Chinese hackers learned SharePoint flaws through alert, Bloomberg News reports
Microsoft is investigating whether a leak from its early alert system for cybersecurity companies allowed Chinese hackers to exploit flaws in its SharePoint service before they were patched, Bloomberg News reported on Friday.
A series of cyberattacks targeting Microsoft collaboration software, specifically SharePoint, have been linked to Chinese hackers and threat actors.