Chinese Hackers Exploit Microsoft SharePoint Vulnerability in Global Cyberattack

1 min read
Source: Microsoft
Chinese Hackers Exploit Microsoft SharePoint Vulnerability in Global Cyberattack
Photo: Microsoft
TL;DR Summary

Microsoft has issued security updates for on-premises SharePoint servers to address active exploits by Chinese state-sponsored threat actors targeting vulnerabilities CVE-2025-49706 and CVE-2025-49704, which are being used to deploy web shells and steal machine keys. Organizations are urged to apply updates, enable AMSI and Defender Antivirus, rotate server keys, and monitor for indicators of compromise to prevent exploitation.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

12 min

vs 13 min read

Condensed

98%

2,42158 words

Want the full story? Read the original article

Read on Microsoft