Microsoft Issues Emergency Fix for Active SharePoint Zero-Day Exploit
UNITED STATES, JUL 22 – Hackers exploit a zero-day flaw in Microsoft SharePoint servers to steal sensitive data and encryption keys, affecting over 10,000 organizations, including government agencies and universities.
- On July 21, 2025, Microsoft warned, widespread cyberattack exploited a zero-day flaw in on-premises SharePoint Server software.
- The zero-day variant CVE-2025-53770 of a SharePoint RCE flaw is being exploited after Microsoft patched the original CVE-2025-49706, researchers say.
- Eye Security scanned over 8,000 SharePoint servers worldwide, and `dozens were found compromised`, according to the firm.
- In response, CISA instructed all US federal agencies to identify affected systems and apply mitigations by July 21.
- While SharePoint Online remains unaffected by the attacks, experts warn that on-premises SharePoint deployments are no longer safe without constant patching and layered defenses.
165 Articles
165 Articles
US nuclear weapons agency breached in Microsoft SharePoint hack, Bloomberg News reports
U.S. National Nuclear Security Administration was among those breached by a hack of Microsoft's SharePoint document management software, Bloomberg News reported on Tuesday, citing a person with knowledge of the matter.Bloomberg reported that no sensitive or classified information is known to have been comprom
US Nuclear Weapons Agency Breached in Microsoft SharePoint Hack
The US agency responsible for maintaining and designing the nation’s cache of nuclear weapons was among those breached by a hack of Microsoft Corp.’s SharePoint document management software, according to a person with knowledge of the matter.
According to software manufacturer Microsoft, the latest cyber attacks on numerous companies and authorities worldwide have been controlled from China.
Coverage Details
Bias Distribution
- 56% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium