NEWSLETTER
Wednesday, July 30, 2025
  • Login
No Result
View All Result
JOURNOS NEWS
32 °c
Manila
29 ° Thu
29 ° Fri
  • Home
  • World News
  • Business
  • Politics
  • Sports
  • Entertainment
  • Technology
  • Lifestyle
  • Science
  • Health
  • Home
  • World News
  • Business
  • Politics
  • Sports
  • Entertainment
  • Technology
  • Lifestyle
  • Science
  • Health
32 °c
Manila
29 ° Thu
29 ° Fri
No Result
View All Result
JOURNOS NEWS
No Result
View All Result
Home Technology Cybersecurity & Digital Safety

Microsoft Urges Emergency Fix as Hackers Exploit SharePoint Zero-Day Vulnerability

SharePoint Servers Under Attack: Microsoft Issues Urgent Patch for Zero-Day Flaw

by The Daily Desk
July 21, 2025
in Cybersecurity & Digital Safety, Cybersecurity & Infrastructure, Tech Industry News, Technology
0
ToolShell Malware Breaches Microsoft SharePoint: Patch Now, Experts Warn - AP Photo/Rick Rycroft, File

Cyberattack Alert: SharePoint Vulnerability Threatens U.S. Agencies and Businesses - AP Photo/Rick Rycroft, File

Microsoft SharePoint Hack: What to Know About the New Zero-Day Vulnerability Affecting Servers Worldwide

A serious security flaw in Microsoft SharePoint is being used by hackers to attack businesses and some U.S. government agencies. Microsoft has issued a warning and is urging anyone using certain versions of SharePoint to patch their systems immediately. The issue affects on-site servers — not cloud-based ones — and could lead to major data breaches if not fixed quickly.

What Is Happening?

Microsoft SharePoint, a platform widely used by companies and organizations for managing files and team collaboration, is currently facing a critical cybersecurity issue. Over the weekend, Microsoft confirmed that hackers are actively exploiting a “zero-day vulnerability” in its SharePoint Server software.

More RelatedPosts

How Americans Are Using AI in Everyday Life, According to New Survey

FBI warns smartphone users to stop sharing 2FA codes in scam texts

How AI Deepfakes Threaten Global Security and Business Integrity

Intel Nova Lake CPU Leak Reveals Massive Cache to Challenge AMD X3D

Load More

A zero-day vulnerability is a previously unknown flaw in software that hackers can use before a fix is available — meaning developers have had “zero days” to patch it. This makes it especially dangerous.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) says the current vulnerability is a variation of an existing issue known as CVE-2025-49706. The exploit allows attackers to gain full access to the SharePoint system, including connected services like Microsoft Teams and OneDrive.

Who Is Affected?

Anyone running Microsoft SharePoint Server software on their own servers — often called “on-premise” servers — is at risk. That includes:

  • Government offices
  • Schools and universities
  • Healthcare networks
  • Private businesses of all sizes

It does not affect SharePoint Online, Microsoft’s cloud-based version of the software.

Cybersecurity firm Eye Security said it scanned over 8,000 SharePoint servers around the world and found that dozens had already been compromised. They believe the attacks began on July 18.

What Is the ToolShell Exploit?

Security researchers believe hackers are using a tool known as ToolShell to carry out these attacks. According to Google’s Threat Intelligence Group, this exploit may allow hackers to maintain access even after patches are applied — a big concern for long-term data security.

Adam Meyers, a senior vice president at cybersecurity firm CrowdStrike, said,

“Anybody who’s got a hosted SharePoint server has got a problem. It’s a significant vulnerability.”

The concern is not just about immediate damage. If hackers can maintain access even after companies think they’ve fixed the issue, it could lead to long-lasting breaches and data theft.

What Has Microsoft Done?

Microsoft issued an emergency alert on Saturday, July 20, confirming the vulnerability and saying a fix was on the way. By Sunday, the company had released official guidance on how to patch:

  • SharePoint Server 2019
  • SharePoint Server Subscription Edition

However, Microsoft is still working on a fix for older software — specifically SharePoint Server 2016.

If your organization uses one of these versions, it’s important to apply Microsoft’s patch immediately or follow any temporary workarounds they suggest.

What Should You Do Now?

If your business or agency is running SharePoint Server software on-premise, here’s what experts recommend:

  • Patch immediately. Follow Microsoft’s updated guidance to install the security fix.
  • Take affected servers offline. Both Microsoft and CISA advise disconnecting vulnerable servers from the internet until patches are applied.
  • Check for signs of compromise. Review system logs, audit access, and monitor for unusual activity.
  • Stay updated. Monitor Microsoft’s support page and cybersecurity alerts for the latest developments.

For organizations using SharePoint Online, there’s currently no need to take action — the cloud-based system is not affected by this exploit.

Why This Matters

SharePoint is a core tool for thousands of organizations to manage internal documents and team communications. A security flaw that gives hackers full access to those systems can lead to:

  • Data breaches
  • Ransomware attacks
  • Leaks of confidential files
  • Disruption to internal operations

Because many government agencies and critical services (like healthcare and education) rely on SharePoint, this vulnerability could have wide-reaching effects.

Final Thoughts

This incident is a reminder of the risks involved with running on-premise server software. Unlike cloud-based systems, on-site servers require constant monitoring and manual patching to stay secure.

If your organization hasn’t reviewed its SharePoint setup in a while, now is the time.

The situation is still unfolding, and Microsoft continues to release updates. Make sure your IT teams are staying informed and acting quickly to protect your systems from potential damage.

Source: AP News – What to know about a vulnerability being exploited on Microsoft SharePoint servers

The Daily Desk

The Daily Desk

J News is a freelance editor and contributor at The Daily Desk, focusing on politics, media, and the shifting dynamics of public discourse. With a decade of experience in digital journalism, Jordan brings clarity and precision to every story.

Related Posts

New Survey Shows Most Americans Use AI—But Not How Tech Giants Hoped - AP Photo/Charlie Neibergall
Artificial Intelligence (AI)

How Americans Are Using AI in Everyday Life, According to New Survey

July 29, 2025
FBI Issues Alert on Scam Texts Targeting iPhone and Android Users’ 2FA Codes - AFP via Getty Images
Cybersecurity & Digital Safety

FBI warns smartphone users to stop sharing 2FA codes in scam texts

July 29, 2025
Fake Voices, Real Consequences: Deepfakes Used to Impersonate Leaders and Scam Companies - AP Photo/Elise Amendola, File
Artificial Intelligence (AI)

How AI Deepfakes Threaten Global Security and Business Integrity

July 28, 2025
Intel Challenges AMD X3D with Huge 144MB BLLC Cache in Nova Lake Chips - Intel
PC Components

Intel Nova Lake CPU Leak Reveals Massive Cache to Challenge AMD X3D

July 28, 2025
Allianz Life Confirms Cyberattack Impacting Majority of U.S. Customers - image: Allianz Life Insurance Company via AP
Cybersecurity & Digital Safety

Allianz Life data breach exposes personal details of U.S. customers

July 27, 2025
Thousands of Selfies Leaked in Tea Dating App Cyberattack - AP Photo, File
Cybersecurity & Digital Safety

Tea dating app data breach exposes thousands of private images

July 27, 2025
AI in Fashion: Vogue’s Guess Ad Stirs Debate Over Body Image and Diversity - Seraphinne Vallora/BBC
AI Ethics & Accountability

Vogue sparks debate with AI model ad in Guess campaign

July 27, 2025
AI Fraud Alert: Sam Altman Says Voiceprint Security Has Been Defeated - AP Photo/Mark Schiefelbein
Artificial Intelligence (AI)

Sam Altman Warns AI Voice Cloning Could Trigger Major Bank Fraud Crisis

July 23, 2025
New Study Links Early Smartphone Use to Emotional Struggles in Children, Especially Girls - Elva Etienne/Moment RF/Getty Images
Health

Why Experts Say Kids Under 13 Shouldn’t Use Smartphones: New Global Study Warns of Mental Health Risks

July 22, 2025
Load More
Next Post
Federal Court Hears Harvard’s Lawsuit Against Trump Over Research Funding Freeze - AP Photo/Lisa Poole, File

Harvard Sues Trump Administration Over $2.6 Billion in Federal Funding Cuts

Starbucks Confirms Pumpkin Spice Latte Comeback for 2025: Full Launch Details - AP Photo/Peter Morgan, File

Starbucks Pumpkin Spice Latte Returns August 26: Here’s What to Know for 2025

Keeping Pets Cool in Record Heat: Vets and Owners Share Essential Tips - AP Photo/Cody Jackson

How to Keep Pets and Horses Safe During Extreme Heatwaves in Florida

Gaza Humanitarian Crisis Sparks Unified Call for Ceasefire from 25 Countries - AP Photo/Jehad Alshrafi

25 Countries Demand Gaza Ceasefire, Urge Israel to Follow International Law

China’s Brain Tech Advances Signal New Rivalry with U.S. in Neural Implants - CNN

China Challenges Neuralink with Breakthrough in Brain-Computer Interface Technology

Popular News

  • Sean Combs Asks Judge for $50 Million Bond After Acquittal on Major Charges - Elizabeth Williams via AP

    Sean Combs requests $50 million bond release before October sentencing

    0 shares
    Share 0 Tweet 0
  • KPop Demon Hunters: How a Musical Animation Became 2025’s Breakout Streaming Hit

    0 shares
    Share 0 Tweet 0
  • Record Antarctic krill catch nears quota, sparking urgent calls to close fishery early

    0 shares
    Share 0 Tweet 0
  • UCLA reaches $6M civil rights settlement with Jewish students and professor

    0 shares
    Share 0 Tweet 0
  • Chile returns stolen luxury watches of Keanu Reeves to FBI

    0 shares
    Share 0 Tweet 0

Recommended

Son Exposes the Truth Behind His Dad’s $100K Stereo Nightmare - image credit to Headphonesty

The $100K Stereo That Keeps Breaking—And the Technician Who Keeps Charging

3 months ago
Vinicius Junior’s hat trick leads Real Madrid to a 5-2 win over Borussia Dortmund

Vinicius Junior’s hat trick leads Real Madrid to a 5-2 win over Borussia Dortmund

9 months ago

Connect with us

  • About Us
  • Contact Us
  • Cookie Settings
  • Privacy Policy
  • Terms and Conditions
  • Support Press Freedom
  • Accessibility Statement
  • Advertising
  • Online Shopping
Breaking News That Keeps You Ahead.

Copyright © 2024 JournosNews.com All rights reserved.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • World News
  • Business
  • Politics
  • Sports
  • Entertainment
  • Technology
  • Lifestyle
  • Science
  • Health

Copyright © 2024 JournosNews.com All rights reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.