Microsoft Urgently Patches SharePoint Zero-Day Exploited in Global Cyberattacks

1 min read
Source: The Hacker News
Microsoft Urgently Patches SharePoint Zero-Day Exploited in Global Cyberattacks
Photo: The Hacker News
TL;DR Summary

Microsoft has released urgent security patches for actively exploited vulnerabilities in on-premises SharePoint servers, including a critical RCE flaw (CVE-2025-53770) and a spoofing flaw (CVE-2025-53771), amid ongoing cyber attacks targeting organizations like banks, universities, and government agencies. The vulnerabilities, which do not affect SharePoint Online, have been exploited since July, prompting urgent recommendations for organizations to update, rotate keys, and enhance defenses to prevent further breaches.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

4 min

vs 5 min read

Condensed

92%

80966 words

Want the full story? Read the original article

Read on The Hacker News