#sharepoint-server

[ follow ]
fromTheregister
2 weeks ago

CISA releases malware analysis for Sharepoint Server attack

CISA analysed six files including two Dynamic Link-Library (.DLL), one cryptographic key stealer, and three web shells. Cyber threat actors could leverage this malware to steal cryptographic keys and execute a Base64-encoded PowerShell command to fingerprint host system and exfiltrate data.
Privacy professionals
#cybersecurity
fromThe Hacker News
1 month ago
Information security

Microsoft Links Ongoing SharePoint Exploits to Three Chinese Hacker Groups

Exploitation of security flaws in SharePoint Server instances has been linked to Chinese hacking groups Linen Typhoon and Violet Typhoon.
Microsoft expects continued attacks using these exploits against unpatched SharePoint systems.
fromComputerWeekly.com
1 month ago
Information security

Microsoft confirms China link to SharePoint hacks | Computer Weekly

Chinese state actors are exploiting a new zero-day vulnerability in SharePoint Server, necessitating urgent security updates from Microsoft.
Privacy technologies
fromTheregister
1 month ago

Another massive security snafu hits Microsoft

Microsoft is facing significant attacks exploiting a critical zero-day vulnerability in SharePoint Server.
The vulnerability allows attackers to take over servers and exfiltrate sensitive data.
[ Load more ]