News

If exploited, attackers can gain full access to SharePoint content and potentially pivot to Outlook, Teams, and OneDrive.
Microsoft says the Chinese threat actors Linen Typhoon, Violet Typhoon, and Storm-2603 have been exploiting the ToolShell ...
The name was coined by Dinh Ho Anh, a researcher from Khoa of Viettel Cyber Security, who developed the exploit. The ...
Hackers with ties to the Chinese government have been linked to a recent wave of widespread attacks targeting a Microsoft ...
A China-based hacking group is deploying Warlock ransomware on Microsoft SharePoint servers vulnerable to widespread attacks ...
More information has emerged on the ToolShell SharePoint zero-day attacks, including impact, victims, and threat actors.
The term "zero-day" attack refers to when a previously unknown vulnerability is targeted. Tens of thousands of servers are ...
Microsoft’s security analysts confirm that a number of cyber attacks on on-premise SharePoint Server users involve ransomware ...
The active exploitation of a dangerous zero-day vulnerability chain in Microsoft SharePoint – which was disclosed over the ...
Microsoft has released security patches for the zero-day vulnerability chain dubbed ToolShell, capable of remote code ...
Microsoft also has issued a patch for a related SharePoint vulnerability — CVE-2025-53771; Microsoft says there are no signs ...
Patches for two vulnerable editions of Microsoft's on-premises SharePoint Server collaboration tool are now available, with ...