See every side of every news story
Published loading...Updated

Microsoft Issues Emergency Fix for Active SharePoint Zero-Day Exploit

UNITED STATES, JUL 22 – Hackers exploit a zero-day flaw in Microsoft SharePoint servers to steal sensitive data and encryption keys, affecting over 10,000 organizations, including government agencies and universities.

  • On July 21, 2025, Microsoft warned, widespread cyberattack exploited a zero-day flaw in on-premises SharePoint Server software.
  • The zero-day variant CVE-2025-53770 of a SharePoint RCE flaw is being exploited after Microsoft patched the original CVE-2025-49706, researchers say.
  • Eye Security scanned over 8,000 SharePoint servers worldwide, and `dozens were found compromised`, according to the firm.
  • In response, CISA instructed all US federal agencies to identify affected systems and apply mitigations by July 21.
  • While SharePoint Online remains unaffected by the attacks, experts warn that on-premises SharePoint deployments are no longer safe without constant patching and layered defenses.
Insights by Ground AI
Does this summary seem wrong?

165 Articles

Center

According to software manufacturer Microsoft, the latest cyber attacks on numerous companies and authorities worldwide have been controlled from China.

·Germany
Read Full Article
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 56% of the sources are Center
56% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

Tech Radar broke the news in United Kingdom on Sunday, July 20, 2025.
Sources are mostly out of (0)