Microsoft Investigates SharePoint Breach and Ransomware Threats

TL;DR Summary
Microsoft is investigating whether a leak from its early alert system for cybersecurity partners, specifically the Microsoft Active Protections Program (MAPP), allowed Chinese hackers to exploit vulnerabilities in SharePoint before they were patched. The breach has affected over 400 entities worldwide, with suspected involvement of Chinese state-sponsored groups. Past incidents suggest potential leaks from the MAPP program, raising concerns about security and transparency, especially given Chinese laws requiring rapid vulnerability reporting and the involvement of Chinese companies in government-linked vulnerability programs.
- Microsoft Probing If Chinese Hackers Learned of Flaws Via Alert Bloomberg.com
- Microsoft says some SharePoint server hackers now using ransomware Reuters
- ToolShell: An all-you-can-eat buffet for threat actors WeLiveSecurity
- Disrupting active exploitation of on-premises SharePoint vulnerabilities Microsoft
- DHS and HHS among federal agencies hacked in Microsoft Sharepoint breach CBS News
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
5 min
vs 6 min read
Condensed
92%
1,008 → 81 words
Want the full story? Read the original article
Read on Bloomberg.com