• Home
  • Categories
  • News
  • Community
EN
EN
Home
CategoriesNewsGlossaryCommunity
Contact Us
Social Media
Region
🌏International
Region
🌏International
Contact
Home
/
News
/
Microsoft issues alert over critical SharePoint flaw amid rising cyberattack concerns

Microsoft issues alert over critical SharePoint flaw amid rising cyberattack concerns

2025-07-21
Summary:Microsoft has warned of a zero-day attack on local SharePoint servers. A security update has been released, and prompt deployment is recommended.

9.13 微軟

Microsoft Reveals Critical Security Vulnerability, Initiates Global Defense Response

Recently, Microsoft issued an urgent security notice to global users, confirming that locally deployed SharePoint servers are under threat from a zero-day attack. This attack has impacted government departments and corporate networks in multiple countries, marking a significant event in the realm of enterprise IT security.

It has been reported that the vulnerability allows attackers to perform deceptive operations on affected servers through privilege forgery. Such attacks enable hackers to impersonate identities, bypass authentication mechanisms, steal sensitive information, and potentially take control of entire internal systems, all without user detection.

Online Versions Secure, Local Deployments Targeted

In its announcement, Microsoft emphasized that the SharePoint Online version on the Microsoft 365 cloud platform is not affected by this vulnerability; the attack is confined to self-hosted server environments. This distinction signifies that institutions using local deployment architectures are at higher risk of this attack.

Microsoft has released patch updates for the SharePoint Subscription Edition and is progressing with security fixes for the 2016 and 2019 versions. The company advises all customers to implement the patch immediately and closely monitor for any unusual network behavior.

FBI Steps In, Security Agencies Strengthen Cooperation

The FBI has launched an investigation into this security incident, working in close collaboration with relevant federal departments and private companies. While the specific source of the attack has not been disclosed, the FBI confirms initial indications of highly organized, cross-border activity.

Several security intelligence agencies have joined the monitoring efforts to prevent the attack from spreading to the financial, telecommunications, and critical infrastructure sectors. An unnamed security expert suggested that this incident could serve as a template for future attacks, urging the industry to enhance its alert mechanisms.

Zero-Day Attacks Intensify Global Network Tensions

A "zero-day vulnerability" refers to a security flaw unknown to developers and unpatched, which attackers often exploit before it is made public. Such technical attacks are notoriously covert and destructive, widely considered among the hardest network threats to fend off.

The SharePoint vulnerability incident highlights the potential risks associated with the dependence on locally deployed services. Without unified monitoring and automatic update mechanisms, servers often become exposed to attackers, serving as valuable entry points.

Microsoft Recommends Network Isolation and Enhanced Protection

For users who have not yet completed updates, Microsoft has proposed several emergency measures, including limiting server connections to the external internet, enabling advanced threat protection services, and deploying application whitelisting strategies. The company also encourages administrators to activate system log analysis functions to track potential attack traces.

"Until the security patch is complete, implementing network isolation is crucial," stated Microsoft’s security department. "The attacker's goal is not rapid penetration but to establish a long-term presence; thus, timely blockage is the most effective defense measure."

Enterprises and Governments Need to Update Security Mindset

Security experts recommend that enterprises reassess their deployment strategies for local and cloud services, especially regarding application update frequency and security response capability. Most cloud service providers now have automated patch mechanisms, whereas traditional local systems often lag in upgrade cycles.

In the future, governments and large institutions may further transition to hybrid or fully cloud architectures to reduce operational and security burdens intrinsic to local services. Microsoft's swift response serves as a reminder to the industry: Security protection is not only the responsibility of software vendors but also an integral part of everyday management by users.

Business Cooperation Telegram Eng

Business Cooperation Skype ENG

Risk Warning and Disclaimer

The market carries risks, and investment should be cautious. This article does not constitute personal investment advice and has not taken into account individual users' specific investment goals, financial situations, or needs. Users should consider whether any opinions, viewpoints, or conclusions in this article are suitable for their particular circumstances. Investing based on this is at one's own responsibility.

The End
Previous
Next

Comments

0/1000

You Missed

Why are fewer and fewer people trading? Perhaps this article can provide you with the answer.

Why are fewer and fewer people trading? Perhaps this article can provide you with the answer.

According to data provided by brokers, 40% of traders give up trading after one month, and only 7% remain active after five years.

亚伦_TK_LOXmv
亚伦_TK_LOXmv
2024-06-04
Investment
Investment
2024-06-04
U.S. elections and Middle East conflict boost uncertainty, driving gold prices higher.

U.S. elections and Middle East conflict boost uncertainty, driving gold prices higher.

With the US election nearing and Middle East tensions rising, risk aversion keeps gold prices high as markets watch Fed rate decisions and US economic data.

TraderKnows
TraderKnows
2024-10-30
Foreign Exchange Trading
Foreign Exchange Trading
2024-10-30
Indonesia's central bank to continue forex intervention, rupiah to strengthen next year.

Indonesia's central bank to continue forex intervention, rupiah to strengthen next year.

Recently, the Governor of the Bank of Indonesia, Perry Warjiyo, publicly stated that they will continue to intervene in the foreign exchange market to stabilize the rupiah.

TraderKnows
TraderKnows
2024-06-05
Foreign Exchange Trading
Foreign Exchange Trading
2024-06-05
Theo Broker Review:High Risk(Suspected Fraud)

Theo Broker Review:High Risk(Suspected Fraud)

Theo (Theo Technology Co., Ltd) is an online forex trading platform. This article evaluates Theo from perspectives like corporate entity, domain registration, regulatory licenses, staff, software, and trade types.

TraderKnows
TraderKnows
2024-05-14
Pig Butchering Scam
Pig Butchering Scam
2024-05-14
Is Opixtech a legitimate forex company? Are the high returns of Opix Algo real?

Is Opixtech a legitimate forex company? Are the high returns of Opix Algo real?

No matter how well Opixtech and Chen De disguise their forex funding scheme, they can't conceal its true nature as a Ponzi scheme.

TraderKnows
TraderKnows
2024-05-10
Ponzi Scheme
Ponzi Scheme
2024-05-10

Wiki

Hedge

Hedging refers to taking opposite investment or trading strategies to mitigate or offset risk.

Recent Post

Trump Invokes Defense Production Act with 850 Million USD for Coal Power to Meet AI Demand

13 hours ago

NY Fed Index Shows High Supply Chain Pressures as Geopolitical Conflicts Raise Global Inflation Con…

13 hours ago

Japan's Real Wages Rise for Fourth Consecutive Month, Fueling June BOJ Rate Hike Bets

13 hours ago

China Flexible Employment Exceeds 300 Million as Blue-Collar Wage Growth Outpaces White-Collar for…

13 hours ago

South Korean Stocks Post Steepest Weekly Drop Since March as Tech Valuations Reset

13 hours ago

China Commercial Paper Rates Drop in Early June Amid Rising Bank Demand

13 hours ago

UK House Prices Unexpectedly Fall in May as Geopolitical Tensions Push Up Borrowing Costs

13 hours ago

Massive Intervention Fails to Save Yen as Short Positions Surge Near Historic Lows

13 hours ago

AI Momentum Pauses as Broadcom Outlook Misses High Expectations; Markets Await Payrolls

13 hours ago

SpaceX Launches 75B USD IPO Roadshow as Access Blocked in Mainland China and Hong Kong

13 hours ago

Global Gold ETFs See $2 Billion Outflows in May as Capital Pivots to Tech Assets

13 hours ago

Nikkei Drops Over 1% on Tech Sector Pullback While Real Wage Growth Provides Support

13 hours ago

South Korea Lifts Mandatory Reporting for Crypto Transfers Over 10M Won

13 hours ago

Amundi Says Asian AI Stocks Supported by Fundamentals as Fed Path Poses Key Risk

13 hours ago

Taiwan Stocks Close 1.33% Lower on Broadcom Drop But Hold Key Technical Support

13 hours ago

You Missed

Why are fewer and fewer people trading? Perhaps this article can provide you with the answer.

Why are fewer and fewer people trading? Perhaps this article can provide you with the answer.

According to data provided by brokers, 40% of traders give up trading after one month, and only 7% remain active after five years.

亚伦_TK_LOXmv
亚伦_TK_LOXmv
2024-06-04
Investment
Investment
2024-06-04
U.S. elections and Middle East conflict boost uncertainty, driving gold prices higher.

U.S. elections and Middle East conflict boost uncertainty, driving gold prices higher.

With the US election nearing and Middle East tensions rising, risk aversion keeps gold prices high as markets watch Fed rate decisions and US economic data.

TraderKnows
TraderKnows
2024-10-30
Foreign Exchange Trading
Foreign Exchange Trading
2024-10-30
Indonesia's central bank to continue forex intervention, rupiah to strengthen next year.

Indonesia's central bank to continue forex intervention, rupiah to strengthen next year.

Recently, the Governor of the Bank of Indonesia, Perry Warjiyo, publicly stated that they will continue to intervene in the foreign exchange market to stabilize the rupiah.

TraderKnows
TraderKnows
2024-06-05
Foreign Exchange Trading
Foreign Exchange Trading
2024-06-05
Theo Broker Review:High Risk(Suspected Fraud)

Theo Broker Review:High Risk(Suspected Fraud)

Theo (Theo Technology Co., Ltd) is an online forex trading platform. This article evaluates Theo from perspectives like corporate entity, domain registration, regulatory licenses, staff, software, and trade types.

TraderKnows
TraderKnows
2024-05-14
Pig Butchering Scam
Pig Butchering Scam
2024-05-14
Is Opixtech a legitimate forex company? Are the high returns of Opix Algo real?

Is Opixtech a legitimate forex company? Are the high returns of Opix Algo real?

No matter how well Opixtech and Chen De disguise their forex funding scheme, they can't conceal its true nature as a Ponzi scheme.

TraderKnows
TraderKnows
2024-05-10
Ponzi Scheme
Ponzi Scheme
2024-05-10

Risk Warning

TraderKnows is a financial media platform, with information displayed coming from public networks or uploaded by users. TraderKnows does not endorse any trading platform or variety. We bear no responsibility for any trading disputes or losses arising from the use of this information. Please be aware that displayed information may be delayed, and users should independently verify it to ensure its accuracy.