Microsoft Investigates SharePoint Vulnerabilities Exploited in Ransomware Attacks

TL;DR Summary
A China-based hacking group, Storm-2603, is exploiting vulnerabilities in Microsoft SharePoint servers to deploy Warlock ransomware, affecting over 420 servers globally and targeting various U.S. government agencies and organizations, with Microsoft urging immediate security updates.
- Microsoft: SharePoint flaws exploited in Warlock ransomware attacks BleepingComputer
- Microsoft says some SharePoint server hackers now using ransomware Reuters
- Microsoft Probing If Chinese Hackers Learned SharePoint Flaws Through Alert Bloomberg
- ToolShell: An all-you-can-eat buffet for threat actors WeLiveSecurity
- Disrupting active exploitation of on-premises SharePoint vulnerabilities Microsoft
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
92%
443 → 35 words
Want the full story? Read the original article
Read on BleepingComputer