Tag: microsoft
-
Microsoft Put Older Versions of SharePoint on Life Support. Hackers Are Taking Advantage
Multiple hacking groups”, including state actors from China”, have targeted a vulnerability in older, on-premises versions of the file-sharing tool after a flawed attempt to patch it. First seen on wired.com Jump to article: www.wired.com/story/microsoft-sharepoint-hack-china-end-of-life-updates/
-
Brave blocks Windows Recall from screenshotting your browsing activity
Brave Software says its privacy-focused browser will block Microsoft’s Windows Recall from capturing screenshots of Brave windows by default to protect users’ privacy. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/brave-blocks-windows-recall-from-screenshotting-your-browsing-activity/
-
Patch für Sharepoint Server 2016; China hinter Angriffen, ca. 400 Organisationen kompromittiert
Noch ein Nachtrag zur 0-Day-Schwachstelle in Microsoft SharePoint sowie der beobachteten Angriffswelle. Microsoft hat auch für SharePoint Server 2016 ein Notfall-Update freigegeben. Inzwischen gibt es Meldungen, dass ein Teil der Angriffe über einen 0-day-Exploit aus China kamen. Und über 400 … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/07/22/patch-fuer-sharepoint-server-2016-china-hinter-angriffen-ca-100-organisationen-kompromittiert/
-
Nothing to see here: Brave browser blocks privacy-busting Microsoft Recall
No screenshots for you! First seen on theregister.com Jump to article: www.theregister.com/2025/07/23/brave_browse_block_microsoft_recall/
-
US Nuclear Agency Hacked in Microsoft SharePoint Frenzy
Threat actors are piling on the zero-day vulnerabilities in SharePoint, including at least three Chinese nation-state cyber-espionage groups. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/us-nuclear-agency-hacked-microsoft-sharepoint
-
Microsoft Integrates Data Lake With Sentinel SIEM
Microsoft Sentinel Data Lake aims to provide inexpensive storage for large volumes of telemetry, while threat intelligence will be included with Defender XDR at no extra cost. First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/microsoft-integrates-data-lake-with-sentinel-siem
-
3 China Nation-State Actors Target SharePoint Bugs
Hackers and cybercrime groups are part of a virtual feeding frenzy, after Microsoft’s recent disclosure of new vulnerabilities in on-premises editions of SharePoint Server. First seen on darkreading.com Jump to article: www.darkreading.com/application-security/3-china-nation-state-actors-sharepoint-bugs
-
Microsoft Reveals Chinese State Hackers Exploiting SharePoint Flaws
Microsoft reveals Chinese state-backed hacker groups, including Linen Typhoon, Violet Typhoon, and Storm-2603, are exploiting SharePoint flaws, breaching over 100 organisations. Discover threat actors, their tactics and Microsoft’s urgent security guidance. First seen on hackread.com Jump to article: hackread.com/microsoft-chinese-state-hackers-exploit-sharepoint-flaws/
-
SharePoint ‘ToolShell’ Vulnerabilities Exploited by Chinese Nation-State Hackers
Microsoft has observed three China-based threat actors, Linen Typhoon, Violet Typhoon and Storm-2603, exploiting the SharePoint vulnerabilities First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/sharepoint-toolshell-chinese/
-
Akamai Identifies Coyote Malware Variant Capable of Compromising Microsoft UIA Framework
Akamai researchers today disclosed they have discovered a variant of Coyote malware that extracts specific banking and cryptocurrency exchanges by compromising the UI Automation (UIA) framework developed by Microsoft. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/07/akamai-identifis-coyote-malware-variant-capable-of-compromising-microsoft-uia-framework/
-
Hackers Exploit Microsoft SharePoint Flaws in Global Breaches
Hackers are exploiting critical SharePoint flaws (CVE-2025-53770/53771) to breach global targets, including governments and corporations. Microsoft urges immediate action. Learn about the active attacks and how to protect your network from credential theft and backdoors. First seen on hackread.com Jump to article: hackread.com/hackers-exploit-microsoft-sharepoint-flaws-breaches/
-
US nuclear weapons agency ‘among 400 organisations breached by Chinese hackers’
Tags: business, china, cybersecurity, data-breach, exploit, government, group, hacker, microsoft, threat, vulnerabilityMicrosoft says vulnerabilities in its SharePoint servers exposed as reports point to wave of attacks<ul><li><a href=”https://www.theguardian.com/business/live/2025/jul/23/stock-markets-rally-us-japan-trade-deal-nikkei-ftse-100-libor-appeal-business-live”>Business live latest updates</li></ul><a href=”https://www.theguardian.com/technology/microsoft”>Microsoft says Chinese “threat actors”, including state-sponsored hackers, have exploited security vulnerabilities in its SharePoint document-sharing servers, with research indicating that several hundred government agencies and organisations have been breached.Hackers have already breached 400 agencies, businesses…
-
Microsoft Patches SharePoint Flaws as Hackers Rush to Exploit Them
As Microsoft puts the final patch in place, a growing number of hackers, including several China state-sponsored threat groups, are quickly pushing forward to exploit the security flaws that will allow them compromise on-premises SharePoint servers to steal data and maintain persistence. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/07/microsoft-patches-sharepoint-flaws-as-hackers-rush-to-exploit-them/
-
Microsoft linked attacks on SharePoint flaws to China-nexus actors
Microsoft linked SharePoint exploits to China-nexus groups Linen Typhoon, Violet Typhoon, and Storm-2603, active since July 7, 2025. Microsoft confirmed that China-linked groups Linen Typhoon, Violet Typhoon, and Storm-2603 exploited SharePoint flaws for initial access as early as July 7, 2025. >>As of this writing, Microsoft has observed two named Chinese nation-state actors, Linen Typhoon…
-
Atomwaffen: US-Nuklearbehörde über Microsoft Sharepoint angegriffen
Die nukleare Sicherheitsbehörde der USA ist eines von mehreren Angriffsopfern der Hacker, die seit Anfang Juli Sharepoint-Server attackieren. First seen on golem.de Jump to article: www.golem.de/news/atomwaffen-cyberangriff-via-sharepoint-trifft-nuklearbehoerde-der-usa-2507-198403.html
-
Microsoft sees China-backed nation-state hackers among adversaries targeting SharePoint
The company urged customers to apply security updates as security researchers warn of escalating attacks. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/microsoft–china-state-hackers-sharepoint/753701/
-
SharePoint under fire: new ToolShell attacks target enterprises
While SentinelOne did not attribute the attack to a specific threat actor, The Washington Post linked it to China-nexus acors. On July 19, Microsoft confirmed active exploitation of a zero-day vulnerability, tracked as CVE-2025-53770 in on-prem SharePoint Servers. The IT giant issued emergency patches for SharePoint Subscription Edition and 2019, with 2016 updates pending. Microsoft…
-
Chinesische Hacker sollen hinter Sharepoint-Attacken stecken
Die weltweiten Angriffe auf Sharepoint-Server laufen schon mindestens seit dem 7. Juli. Microsoft ordnet sie erstmals bestimmten Cyberakteuren zu. First seen on golem.de Jump to article: www.golem.de/news/microsoft-chinesische-hacker-sollen-hinter-sharepoint-attacken-stecken-2507-198391.html
-
Hacker aus China nutzen neue Sharepoint-Lücke aus
Microsoft hat drei chinesische Hackergruppen identifiziert, die für die Angriffe über die Sicherheitslücke in SharePoint verantwortlich sein sollen.Bei den aktuellen Cyberattacken auf zahlreiche Unternehmen und Behörden führt die Spur Microsoft zufolge nach China. Unter den Angreifern seien bisher drei chinesische Hackergruppen identifiziert worden, teilte der Software-Konzern mit. Zwei davon seien für Aktionen im staatlichen Auftrag…
-
US Nuclear Agency Breach Tied to SharePoint Zero-Days
Over 400 Organizations Breached via Ongoing ToolShell Attacks, Researchers Warn. The U.S. government agency that maintains and designs America’s nuclear weapons was reportedly breached by attackers exploiting zero-day flaws in on-premises Microsoft SharePoint servers, with researchers now counting over 400 victims, including European and Middle Eastern governments. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/us-nuclear-agency-breach-tied-to-sharepoint-zero-days-a-29037
-
Microsoft SharePoint zero-day attacks pinned on China-linked ‘Typhoon’ threat groups
Linen Typhoon, Violet Typhoon and Storm-2603 are behind the initial attack spree that erupted over the weekend. Other threat groups are now following suit. First seen on cyberscoop.com Jump to article: cyberscoop.com/microsoft-sharepoint-zero-days-china-typhoon/
-
Microsoft confirms China link to SharePoint hacks
Microsoft confirms two known China-nexus threat actors, and one other suspected state-backed hacking group, are exploiting vulnerabilities in SharePoint Server First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366628014/Microsoft-confirms-China-link-to-SharePoint-hacks
-
Microsoft SharePoint On-Premise Vulnerability (CVE-2025-53770) Under Active Exploitation
Summary A critical zero-day vulnerability (now assigned CVE-2025-53770) has been identified in Microsoft SharePoint Server, affecting multiple on-premises versions. The flaw allows unauthenticated remote code First seen on research.kudelskisecurity.com Jump to article: research.kudelskisecurity.com/2025/07/23/microsoft-sharepoint-on-premise-vulnerability-cve-2025-53770-under-active-exploitation/
-
Chinese cyber spies among those linked to SharePoint attacks
Exploitation of the ToolShell RCE zero-day in Microsoft SharePoint continues to gather pace, with evidence emerging of exploitation by nation state-backed threat actors First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366627767/Chinese-cyber-spies-among-those-linked-to-SharePoint-attacks
-
Google, Microsoft say Chinese hackers are exploiting SharePoint zero-day
The tech giants have evidence that Chinese hackers are exploiting the new bug, but warned “multiple actors” are also hacking into affected SharePoint systems. First seen on techcrunch.com Jump to article: techcrunch.com/2025/07/22/google-microsoft-say-chinese-hackers-are-exploiting-sharepoint-zero-day/
-
Microsoft SharePoint attacks target on-premises servers
Thousands of organizations, including government agencies, running SharePoint on-premises are vulnerable after Microsoft issued a security alert warning of active attacks. First seen on techtarget.com Jump to article: www.techtarget.com/searchcontentmanagement/news/366627759/Microsoft-SharePoint-attacks-target-on-premises-servers
-
US-Nuklearwaffenbehörde von Cyberangriff betroffen
US nuclear weapons agency breached in Microsoft SharePoint hack, Bloomberg News reports First seen on reuters.com Jump to article: www.reuters.com/world/us/us-nuclear-weapons-agency-breached-microsoft-sharepoint-hack-bloomberg-news-2025-07-23/
-
Microsoft rolls out Windows 11 >>quick recovery<< feature
With the latest Windows 11 update, Microsoft is saying goodbye to the infamous >>Blue Screen of Death
-
Patch für Sharepoint Server 2016; China hinter Angriffen, ca. 100 Organisationen kompromittiert
Noch ein Nachtrag zur 0-Day-Schwachstelle in Microsoft SharePoint sowie der beobachteten Angriffswelle. Microsoft hat auch für SharePoint Server 2016 ein Notfall-Update freigegeben. Inzwischen gibt es Meldungen, dass ein Teil der Angriffe über einen 0-day-Exploit aus China kamen. Und über 100 … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/07/22/patch-fuer-sharepoint-server-2016-china-hinter-angriffen-ca-100-organisationen-kompromittiert/
-
Microsoft pins on-prem SharePoint attacks on Chinese threat actors
As Microsoft continues to update its customer guidance for protecting on-prem SharePoint servers against the latest in-the-wild attacks, more security firms have begun sharing … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/07/22/microsoft-pins-sharepoint-attacks-cve-2025-53770/

