Microsoft fixes 2 SharePoint zero-days under attack
Digest more
Microsoft said in a post on its website on Saturday that it was “aware of active attacks targeting on-premises SharePoint Server customers by exploiting vulnerabilities.” SharePoint is a Microsoft platform that allows customers to manage and share documents within their organizations.
Microsoft issued an emergency fix to close off a vulnerability in its SharePoint software that hackers have exploited to carry out widespread attacks on businesses and at least some federal agencies.
Michael Sikorski, CTO and head of threat Intelligence for Unit 42 at Palo Alto Networks, told SDxCentral that “on-prem SharePoint deployments – particularly within government, schools, and healthcare, including hospitals and large enterprise companies – are at immediate risk”.
An investigation is underway after hackers used a security flaw in Microsoft software to internationally infiltrate agencies and businesses over the weekend.
Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the globe and steal sensitive information, according to officials and cybersecurity researchers.
The newly discovered flaw in Microsoft's SharePoint software has allowed hackers to target dozens of companies and organizations. Only a partial fix has been issued.
Microsoft warned users that hackers used a security flaw in its server software to attack government agencies and businesses around the world. The federal government, along with those in Canada and Australia, has launched an investigation into the hack that targeted SharePoint servers, The Washington Post reported.
Hackers have been exploiting a vulnerability to attack SharePoint and connected Microsoft services in what will be a big problem for corporate Mac users this week.