Microsoft Hit with SharePoint Attack – One version is still vulnerable

Spread the love

Microsoft store in New York, USA, on Friday, October 25, 2024.

Jeenah Moon | Bloomberg | Ghetto images

Microsoft has warned of ‘active attacks’ directed at him Sharepoint Cooperation software, with security researchers noting that organizations around the world are affected by the offense.

Cybersecurity and Infrastructure Security Agency said On Sunday, the edition that vulnerability provides inactive access to systems and full access to SharePoint content, which allows bad participants to execute a network code.

CISA said that while the scope and impact of the attack continue to be evaluated, the agency warned that “it is a risk to organizations.”

Microsoft late Sunday has issued customer amendments to apply to two versions of SharePoint software. Another version for 2016 remains vulnerable and the company said He works to develop a patch.

Researchers in Palo Alto Networks He said the hack may have reached thousands of organizations worldwide.

“The operations are real, in all, and they are a serious threat,” they added.

CNBC addressed Microsoft for further comment and information.

In signal On Saturday, Microsoft said the attack was applied only to SharePoint’s local servers, not those in the cloud like Microsoft 365. The SharePoint software is commonly used by global enterprises and organizations for storing and cooperation with documents.

Vulnerability is particularly concerned as it allows hackers to introduce themselves to users or services even after shaking SharePoint Server, According to to researchers at the European Cybersecurity Eye Security Company, which said it first identified the disadvantage.

SharePoint servers are often associated with other Microsoft services such as Outlook and teams, which means that such a violation can “quickly” lead to data theft and password collecting, eye security researchers said.

Separately, Alaska Airlines It briefly stopped its ground operations for about three hours on Sunday due to interruption of IT. Lifted Stopping the ground At approximately 2 o’clock in the morning, the carrier says in a statement.

It was unclear whether the interruption was related to the SharePoint attack.

Leave a Reply

Your email address will not be published. Required fields are marked *