Close Menu
Core Bulletin

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    How Kentucky bourbon went from boom to bust

    August 10, 2025

    L’Oréal hires OnlyFans star to market makeup popular with teenagers | Young people

    August 10, 2025

    How to use Instagram Map and protect your privacy

    August 10, 2025
    Facebook X (Twitter) Instagram
    Core BulletinCore Bulletin
    Trending
    • How Kentucky bourbon went from boom to bust
    • L’Oréal hires OnlyFans star to market makeup popular with teenagers | Young people
    • How to use Instagram Map and protect your privacy
    • Park Chan-wook, Don McKellar Expelled From Writers Guild
    • Meera Sodha’s recipe for chocolate, mascarpone and cherry cake | Dessert
    • Fantasy football rankings 2025: Busts by proven NFL model that called Raheem Mostert’s slow year
    • Thousands rally in Tel Aviv against Israeli government's plan to expand Gaza war
    • ‘A cornucopia’: the coming football season will set a UK record for viewers and income | TV streaming
    Sunday, August 10
    • Home
    • Business
    • Health
    • Lifestyle
    • Politics
    • Science
    • Sports
    • Travel
    • World
    • Technology
    • Entertainment
    Core Bulletin
    Home»Technology»Microsoft hit with SharePoint attack — one version still vulnerable
    Technology

    Microsoft hit with SharePoint attack — one version still vulnerable

    By Liam PorterJuly 22, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
    Microsoft hit with SharePoint attack — one version still vulnerable
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A Microsoft store in New York, US, on Friday, Oct. 25, 2024. 

    Jeenah Moon | Bloomberg | Getty Images

    Microsoft has warned of “active attacks” targeting its SharePoint collaboration software, with security researchers noting that organizations worldwide stand to be affected by the breach.

    The Cybersecurity and Infrastructure Security Agency said Sunday in a release that the vulnerability provides unauthenticated access to systems and full access to SharePoint content, enabling bad actors to execute code over the network.

    CISA said that while the scope and impact of the attack continue to be assessed, the agency warned that it “poses a risk to organizations.”

    Microsoft late Sunday issued fixes for customers to apply to two versions of the SharePoint software.

    On Monday evening, Microsoft released a patch for SharePoint Server 2016, an older option for on-premises data centers.

    Researchers at Palo Alto Networks said the hack likely reached thousands of organizations globally.

    “The exploits are real, in-the-wild and pose a serious threat,” they added.

    A Microsoft spokesperson declined to comment on the incident beyond what was shared in a company blog post.

    In an alert Saturday, Microsoft said the attack applies only to on-premises SharePoint servers, not those in the cloud like Microsoft 365. SharePoint software is commonly used by global businesses and organizations to store and collaborate on documents.

    The vulnerability is especially concerning because it allows hackers to impersonate users or services even after the SharePoint server is patched, according to researchers at European cybersecurity firm Eye Security, which said it first identified the flaw.

    SharePoint servers often connect to other Microsoft services such as Outlook and Teams, meaning such a breach can “quickly” lead to data theft and password harvesting, Eye Security researchers said.

    “Once inside, they’re exfiltrating sensitive data, deploying persistent backdoors, and stealing cryptographic keys,” Michael Sikorski, CTO and head of threat intelligence for Palo Alto’s Unit 42, said in a statement. “The attackers have leveraged this vulnerability to get into systems and are already establishing their foothold.”

    Separately, Alaska Airlines briefly halted its ground operations for about three hours on Sunday due to an IT outage. It lifted the ground stop at roughly 2 a.m. EST, the carrier said in a statement.

    It was unclear whether the outage was related to the SharePoint attack.

    Don’t miss these insights from CNBC PRO

    attack hit Microsoft SharePoint version vulnerable
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Liam Porter
    • Website

    Liam Porter is a seasoned news writer at Core Bulletin, specializing in breaking news, technology, and business insights. With a background in investigative journalism, Liam brings clarity and depth to every piece he writes.

    Related Posts

    How to use Instagram Map and protect your privacy

    August 10, 2025

    Best Open Earbuds, Tested and Reviewed (2025): Bose and More

    August 9, 2025

    Sam Altman says he doesn’t think about Elon Musk that much

    August 9, 2025

    NASA and Google are building an AI medical assistant to keep Mars-bound astronauts healthy

    August 9, 2025

    A Special Diamond Is the Key to a Fully Open Source Quantum Sensor

    August 9, 2025

    Bitcoin (BTC) price cycle might be breaking

    August 9, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Medium Rectangle Ad
    Don't Miss
    World

    How Kentucky bourbon went from boom to bust

    August 10, 2025

    Robin Levinson KingBBC NewsGetty ImagesBulleit Bourbon reported a more than 7% sales drop this fiscal…

    L’Oréal hires OnlyFans star to market makeup popular with teenagers | Young people

    August 10, 2025

    How to use Instagram Map and protect your privacy

    August 10, 2025

    Park Chan-wook, Don McKellar Expelled From Writers Guild

    August 10, 2025
    Our Picks

    Reform council confirms ‘patriotic’ flag policy

    July 4, 2025

    Trump references bankers with antisemitic slur in Iowa speech to mark megabill’s passage – as it happened | Donald Trump

    July 4, 2025

    West Indies v Australia: Tourists bowled out for 286 in Grenada Test

    July 4, 2025

    Beards may be dirtier than toilets – but all men should grow one | Polly Hudson

    July 4, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Medium Rectangle Ad
    About Us

    Welcome to Core Bulletin — your go-to source for reliable news, breaking stories, and thoughtful analysis covering a wide range of topics from around the world. Our mission is to inform, engage, and inspire our readers with accurate reporting and fresh perspectives.

    Our Picks

    How Kentucky bourbon went from boom to bust

    August 10, 2025

    L’Oréal hires OnlyFans star to market makeup popular with teenagers | Young people

    August 10, 2025
    Recent Posts
    • How Kentucky bourbon went from boom to bust
    • L’Oréal hires OnlyFans star to market makeup popular with teenagers | Young people
    • How to use Instagram Map and protect your privacy
    • Park Chan-wook, Don McKellar Expelled From Writers Guild
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions
    © 2025 Core Bulletin. All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.