21/07/25 | 10:57 am

Print

Microsoft alerts businesses, governments to server software attack

Microsoft has issued an alert about “active attacks” on server software used by government agencies and businesses to share documents within organizations, and recommended security updates that customers should apply immediately.

The FBI said on Sunday it is aware of the attacks and is working closely with its federal and private-sector partners, but offered no other details.

In an alert issued on Saturday, Microsoft said the vulnerabilities apply only to SharePoint servers used within organizations. It said that SharePoint Online in Microsoft 365, which is in the cloud, was not hit by the attacks.

“We’ve been coordinating closely with CISA, DOD Cyber Defense Command and key cybersecurity partners globally throughout our response,” a Microsoft spokesperson said, adding that the company had issued security updates and urged customers to install them immediately.

The Washington Post, which first reported the hacks, said unidentified actors in the past few days had exploited a flaw to launch an attack that targeted U.S. and international agencies and businesses.

The hack is known as a “zero day” attack because it targeted a previously unknown vulnerability, the newspaper said, quoting experts. Tens of thousands of servers were at risk.

In the alert, Microsoft said that a vulnerability “allows an authorized attacker to perform spoofing over a network.” It issued recommendations to stop the attackers from exploiting it.
Microsoft has issued an alert about “active attacks” on server software used by government agencies and businesses to share documents within organizations, and recommended security updates that customers should apply immediately.

The FBI said on Sunday it is aware of the attacks and is working closely with its federal and private-sector partners, but offered no other details.

In an alert issued on Saturday, Microsoft said the vulnerabilities apply only to SharePoint servers used within organizations. It said that SharePoint Online in Microsoft 365, which is in the cloud, was not hit by the attacks.

“We’ve been coordinating closely with CISA, DOD Cyber Defense Command and key cybersecurity partners globally throughout our response,” a Microsoft spokesperson said, adding that the company had issued security updates and urged customers to install them immediately.

The Washington Post, which first reported the hacks, said unidentified actors in the past few days had exploited a flaw to launch an attack that targeted U.S. and international agencies and businesses.

The hack is known as a “zero day” attack because it targeted a previously unknown vulnerability, the newspaper said, quoting experts. Tens of thousands of servers were at risk.

In the alert, Microsoft said that a vulnerability “allows an authorized attacker to perform spoofing over a network.” It issued recommendations to stop the attackers from exploiting it.

In a spoofing attack, an actor can manipulate financial markets or agencies by hiding the actor’s identity and appearing to be a trusted person, organization or website.

Earlier, Microsoft said it is working on updates to 2016 and 2019 versions of SharePoint. If customers cannot enable recommended malware protection, they should disconnect their servers from the internet until a security update is available, it added.
In a spoofing attack, an actor can manipulate financial markets or agencies by hiding the actor’s identity and appearing to be a trusted person, organization or website.

Earlier, Microsoft said it is working on updates to 2016 and 2019 versions of SharePoint. If customers cannot enable recommended malware protection, they should disconnect their servers from the internet until a security update is available, it added.

RELATED ARTICLES

14 hours ago | EOS-05 as proud moment for India

PM Modi hails ISRO’s GSLV-F17 launch carrying EOS-05 as proud moment for India

Prime Minister Narendra Modi on Friday congratulated the Indian Space Research Organisation (ISRO) on the successful launch of the GSLV-F17 rocket carrying the EOS-05 Earth observation satellite, describing the achievement as a proud moment for the c...

14 hours ago | first imaging satellite in geosynchronous orbit

India’s first imaging satellite in geosynchronous orbit lifts off successfully

ISRO's state-of-the art Earth observation spacecraft, the country's first ever imaging satellite intended for the Geosynchronous orbit, EOS-05 lifted off from the spaceport here on Friday. Set to provide real-time imagery and help the nation in area...

03/09/26 | 11:22 am | ban on AI for most NYC students

Mamdani imposes one-year ban on AI for most NYC students

New York City officials announced a one-year moratorium on students using artificial intelligence in public elementary and middle schools, the latest step by public officials to set guidelines around new technology in the classroom. The move by the ...