Global Outcry: Microsoft SharePoint Attack Impacts Businesses and Governments Worldwide

Admin

Global Outcry: Microsoft SharePoint Attack Impacts Businesses and Governments Worldwide

Microsoft has raised alarms about ongoing “active attacks” against its SharePoint software, a popular tool used by businesses for collaboration. The Cybersecurity and Infrastructure Security Agency (CISA) revealed that a security flaw grants unauthorized access, allowing attackers to execute code and access content on SharePoint systems.

This vulnerability poses a serious threat. According to CISA, it is currently being assessed, but they warn it could impact organizations globally. Following the discovery, Microsoft rolled out fixes for some versions of SharePoint, but one version from 2016 still remains vulnerable.

Researchers from Palo Alto Networks caution that the breach could have reached thousands of businesses. They clarified, “The exploits are real, in-the-wild and pose a serious threat.”

On Saturday, Microsoft specified that this issue only affects on-premises SharePoint servers, not those hosted in the cloud, such as Microsoft 365. SharePoint is widely utilized for document storage and collaboration, making this vulnerability especially concerning.

Eye Security, a European cybersecurity firm that first identified the flaw, reported that even after a server is patched, hackers could still impersonate users. This creates a risk for organizations as SharePoint often connects with other Microsoft services like Outlook and Teams. Once hackers penetrate the system, they can quickly steal sensitive data and even deploy backdoors for future access.

Michael Sikorski from Palo Alto stated, “Once inside, they’re exfiltrating sensitive data and deploying persistent backdoors.” This emphasizes the urgency for organizations to update their systems as soon as patches become available.

In related news, Alaska Airlines faced an IT outage that briefly halted ground operations. While it is unclear if this incident is connected to the SharePoint attacks, it highlights the potential chaos that can arise when cybersecurity is compromised.

As of now, organizations need to remain vigilant and prioritize security updates for their systems to protect against these growing threats. Cybersecurity experts are urging businesses to stay informed and proactive to safeguard their data in the face of such vulnerabilities.

For more details on this situation, you can visit the CISA website.



Source link

Politics,Breaking News: Politics,Cybersecurity,Alaska Air Group Inc,Palo Alto Networks Inc,Microsoft Corp,Internet,Technology,Breaking News: Technology,business news