Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Microsoft Fix SharePoint Zero-Day-Crebs on Target Attack on Security
    Security

    Microsoft Fix SharePoint Zero-Day-Crebs on Target Attack on Security

    PineapplesUpdateBy PineapplesUpdateJuly 21, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Microsoft Fix SharePoint Zero-Day-Crebs on Target Attack on Security
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Sunday, July 20, Microsoft corp. An emergency safety update for a vulnerability in Sharepoint server Weak organizations are being actively exploited to compromise. The patch report comes that malicious hackers have used Sharepoint defects to dissolve American federal and state agencies, universities and energy companies.

    Microsoft Fix SharePoint Zero-Day-Crebs on Target Attack on Security

    Picture: By Shuttersk, Escanio.

    In a consultant Sharepoint security holes, about aka Cve-2025-53770Microsoft stated that it is aware of active attacks, which is known about the weakens that are targeted and exploited weaknesses to SharePoint server customers who were partially addressed by 8 July, 2025 security updates.

    Cyber security and infrastructure security agency (CISA) AgreedSaying that CVE-2025-53770 is a version on Microsoft Patch earlier this month (Cve-2025-49706)Microsoft notes weakness applies only to Sharepoint server that organizations use in-houses, and that Sharepoint online and microsoft 365 are not affected.

    Washington Post Informed The US government and partner in Canada and Australia on Sunday are checking the hack of the Sharepoint server, providing a platform to share and manage the documents. In The Post report, at least two American federal agencies have seen their servers through SharePoint vulnerability.

    According to CISA, the attackers who exploit the newly-fed defects are retrofitting the compromised server with a back door “Toolshell“It provides informal, remote access to the system. CISA stated that the toolshell enables the attackers to fully reach the Sharepoint material – including the file system and internal configuration – and execute the code on the network.

    Researcher on eye protection He said that he first exploited large-scale Sharepoint Flaw on July 18, 2025, and soon found dozens of different servers compromised by bug and infected with toolshell. In A blog postResearchers said the attacks demanded to steal the Sharepoint server asp.net machine.

    “These keys can be used to facilitate further attacks, even at the later date,” eye safety warned. “It is important that the affected server sharepoint server rotate the asp.net machine and restart II on all Sharepoint Server. Patching is not enough alone. We strongly advise defenders to advice guards not to wait for a seller fix before taking action. This danger is already on and spreading rapidly.”

    Microsoft advisor says the company has released updates Sharepoint server membership version And Sharepoint Server 2019But it is still working on updates for supported versions Sharepoint 2019 And Sharepoint 2016,

    CISA advises weak organizations to enable the anti-mailware scan interface (AMSI) in Sharepoint, to deploy Microsoft defender AV on all Sharepoint servers, and to disconnect the products affected by public-affected Internet until an official patches are available.

    Safety firm Rapid7 Note Microsoft has described the CVE-2025-53770 related to the previous vulnerability- Cve-2025-49704It was patched earlier this month-and that the CVE-2025–49704 was part of an exploitation series. Pwn2own Hacking competition in May 2025. That exploitation chain called for a second Sharepoint weakness – Cve-2025-49706 – Joe Microsoft unsuccessfully tried to fix this month’s patch on Tuesday.

    Microsoft has also released a patch for the respective Sharepoint vulnerability – Cve-2025-53771Microsoft states that there are no indications of active attacks on CVE-2025-53771, and that the patch is to provide stronger protection than updates for CVE-2025-49706.

    This is a fast developing story. Any update will be noted with a timstamp.

    Attack fix Microsoft Security SharePoint target ZeroDayCrebs
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleBritain can create a U-turn on Apple’s encryption backdoor demand
    Next Article Why LG C5 OLED is still a favorite TV of mine, especially at a discount of $ 700
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    How a simple link allowed hackers to bypass Copilot’s security guardrails – and what Microsoft did about it

    January 19, 2026
    Startups

    A new earbud security flaw could leave you a victim of remote spying – here’s how to fix it

    January 18, 2026
    Startups

    Your Bluetooth headphones may be under attack – here’s what to do next

    January 15, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Google tests AI-operated audio overview in search results for some questions

    June 16, 20250 Views

    Yes, this was the original voice of the Garat in the trailer for the thief VR

    June 16, 20250 Views

    Best LC10 loadout in call of duty: Warzone

    June 16, 20250 Views
    Our Picks

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2026 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.