See every side of every news story
Published loading...Updated

Microsoft probing if Chinese hackers learned SharePoint flaws through alert, Bloomberg News reports

UNITED STATES, JUL 25 – Chinese state-aligned groups exploited an unpatched zero-day flaw in SharePoint servers to breach over 400 organizations, including critical U.S. agencies, Microsoft said.

  • On July 7, 2025, Microsoft said Chinese hackers exploited a critical zero-day flaw in on-premises SharePoint servers, breaching over 400 organizations including the U.S. National Nuclear Security Administration.
  • Because a security patch released this month failed to fully fix a critical flaw, Microsoft is probing if a leak from its Active Protections Program led to the widespread exploitation.
  • Linen Typhoon and Violet Typhoon exploited the flaw to steal data and deploy ransomware, Microsoft said, impacting institutions such as the U.S. National Institutes of Health, energy companies, universities and government agencies.
  • The Cybersecurity and Infrastructure Security Agency has notified up to a dozen federal entities of possible compromise, the Department of Defense said it was not affected, and Microsoft urged all customers to install urgent security updates immediately.
  • With rapid adoption of these exploits, Microsoft assesses threat actors will keep targeting unpatched on-premises SharePoint systems, and Michael Sikorski advised organizations to assume they’ve been compromised.
Insights by Ground AI
Does this summary seem wrong?

17 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 43% of the sources are Center
43% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

Telegrafi broke the news in on Wednesday, July 23, 2025.
Sources are mostly out of (0)