Smart Business Tips
Sign In
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Notification
The ROI of AI Consulting: Measuring Success in Business Transformation
Social Media

The ROI of AI Consulting: Measuring Success in Business Transformation

Ethereum Binance Reserves At New High As Dominance Grows — What This Means For Price
Crypto

Ethereum Binance Reserves At New High As Dominance Grows — What This Means For Price

11 Best Places To Sell Your RV for the Most Money
Personal Finance

11 Best Places To Sell Your RV for the Most Money

7 Best AI Website Builders 2025: Top Platforms Compared
E-commerce

7 Best AI Website Builders 2025: Top Platforms Compared

Font ResizerAa
Smart Business TipsSmart Business Tips
  • Home
  • Business
  • Entrepreneurship
  • Contact US
  • Branding
  • Sales
  • Shop
Search
  • Home
  • Business
    • Business Coaching
    • Business Growth
    • Business Tools & Apps
  • Entrepreneurship
    • Entrepreneurs
    • Crypto
    • Innovation
    • Investing
    • Leadership
    • Productivity
  • Contact US
    • Blog
  • Branding
    • Content Marketing
    • Digital Marketing
    • E-commerce
    • Marketing Strategies
    • Personal Finance
  • Sales
    • Small Business Tips
    • Social Media
    • Startups
    • Tech Trends
    • Investing
  • Shop
Sign In Sign In
Follow US
Made by ThemeRuby using the Foxiz theme. Powered by WordPress
Smart Business Tips > Blog > Tech Trends > Hackers exploiting SharePoint zero-day seen targeting government agencies
Tech Trends

Hackers exploiting SharePoint zero-day seen targeting government agencies

Admin45
Last updated: July 21, 2025 8:19 pm
By
Admin45
3 Min Read
Hackers exploiting SharePoint zero-day seen targeting government agencies
SHARE


The hackers behind the initial wave of attacks exploiting a zero-day in Microsoft SharePoint servers have so far primarily targeted government organizations, according to researchers as well as news reports.

Over the weekend U.S. cybersecurity agency CISA published an alert, warning that hackers were exploiting a previously unknown bug — known as a “zero-day” — in Microsoft’s enterprise data management product SharePoint. While it’s still early to draw definitive conclusions, it appears that the hackers who first started abusing this flaw were targeting government organizations, according to Silas Cutler, the principal researcher at Censys, a cybersecurity firm that monitors hacking activities on the internet. 

“It looks like initial exploitation was against a narrow set of targets,” Cutler told TechCrunch. “Likely government related.” 

“This is a fairly rapidly evolving case. Initial exploitation of this vulnerability was likely fairly limited in terms of targeting, but as more attackers learn to replicate exploitation, we will likely see breaches as a result of this incident,” said Cutler.

Contact Us

Do you have more information about these SharePoint attacks? We’d love to hear from you. From a non-work device and network, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or email.

Now that the vulnerability is out there, and still not fully patched by Microsoft, it’s possible other hackers that are not necessarily working for a government will join in and start abusing it, Cutler said.  

Cutler added that he and his colleagues are seeing between 9,000 and 10,000 vulnerable SharePoint instances accessible from the internet, but that could change. Eye Security, which first published the existence of the bug, reported seeing a similar number, saying its researchers scanned more than 8,000 SharePoint servers worldwide and found evidence of dozens of compromised servers. 

Given the limited number of targets and the types of targets at the beginning of the campaign, Cutler explained, it is likely that the hackers were part of a government group, commonly known as an advanced persistent threat.

Techcrunch event

San Francisco
|
October 27-29, 2025

The Washington Post reported on Sunday that the attacks targeted U.S. federal and state agencies, as well as universities and energy companies, among other commercial targets. 

Microsoft said in a blog post that the vulnerability only affects versions of SharePoint that are installed on local networks, and not the cloud versions, which means that each organization that deploys a SharePoint server needs to apply the patch, or disconnect it from the internet.



Source link

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
Share This Article
Facebook Email Copy Link
Leave a Comment Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe
TelegramFollow
Ad image

You Might Also Like

Leaked Memo: Anthropic CEO Says the Company Will Pursue Gulf State Investments After All
Tech Trends

Leaked Memo: Anthropic CEO Says the Company Will Pursue Gulf State Investments After All

By
Admin45
July 22, 2025
Gear News of the Week: Insta360 Debuts a Drone Company, and DJI Surprises With an 8K 360 Camera
Tech Trends

Gear News of the Week: Insta360 Debuts a Drone Company, and DJI Surprises With an 8K 360 Camera

By
Admin45
August 2, 2025
Apple projects tariff costs will hit .1B next quarter
Tech Trends

Apple projects tariff costs will hit $1.1B next quarter

By
Admin45
August 1, 2025
Apple looks to bid on becoming US home for Formula 1
Tech Trends

Apple looks to bid on becoming US home for Formula 1

By
Admin45
July 9, 2025
Samsung Drops Galaxy Z Fold 7 to 9 With New Secret Discount
Tech Trends

Samsung Drops Galaxy Z Fold 7 to $899 With New Secret Discount

By
Admin45
July 18, 2025
US government confirms arrest of Chinese national accused of stealing COVID research and mass-hacking email servers
Tech Trends

US government confirms arrest of Chinese national accused of stealing COVID research and mass-hacking email servers

By
Admin45
July 8, 2025

SmartBusinessTips

  • Business Tools & Apps
  • Marketing Strategies
  • Social Media
  • Tech Trends
  • Branding
  • Business
  • Crypto
  • Sales
  • About Us
  • Privacy Policy
  • Member Login
  • Contact Us
  • Business Coaching
  • Business Growth
  • Content Marketing
  • Branding

@Smartbusinesstips Copyright-2025-2027 Content.

Don't not sell my personal information
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up