financetom
Business
financetom
/
Business
/
Microsoft server hack has hit about 100 victims, researcher says
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Microsoft server hack has hit about 100 victims, researcher says
Jul 21, 2025 9:41 AM

*

Hack exploits previously unknown flaw in SharePoint

software

*

Thousands of entities potentially now vulnerable to attack

*

Around 100 different organizations compromised by hackers

(Adds comment from Netherlands-based researcher in paragraphs

3, 4, and 5. Adds comment from NCSC in paragraph 9.)

By James Pearson and Raphael Satter

WASHINGTON/LONDON, July 21 (Reuters) -

A sweeping cyberespionage operation targeting Microsoft ( MSFT )

server software compromised about 100 different

organizations as of the weekend, one of the researchers who

helped uncover the campaign said Monday.

Microsoft ( MSFT ) on Saturday issued an alert about "active

attacks" on self-managed SharePoint servers, which are widely

used by government agencies and businesses to share documents

within organisations. Dubbed a "zero day" because it leverages a

previously undisclosed digital weaknesses, the hacks allow spies

to penetrate vulnerable servers and potentially drop a back door

to secure continuous access to victim organizations.

Vaisha Bernard, the chief hacker at Eye Security, a

Netherlands-based cybersecurity firm which

discovered the hacking campaign

targeting one of its clients on Friday, said that an

internet scan carried out with the ShadowServer Foundation had

uncovered nearly 100 victims altogether - and that was before

the technique behind the hack was widely known.

"It's unambiguous," Bernard said. "Who knows what other

adversaries have done since to place other back doors."

He declined to identify the affected organizations, saying

that the relevant national authorities had been notified. The

ShadowServer Foundation didn't immediately return a message

seeking comment.

Another researcher said that, so far, the spying appeared to

be the work of a single hacker or set of hackers.

"It's possible that this will quickly change," said Rafe

Pilling, Director of Threat Intelligence at Sophos, a British

cybersecurity firm.

Microsoft ( MSFT ) said it had "provided security updates and

encourages customers to install them," a company spokesperson

said in an emailed statement.

It was not clear who was behind the ongoing hack. The FBI said

on Sunday it was aware of the attacks and was working closely

with its federal and private-sector partners, but offered no

other details. Britain's National Cyber Security Center said in

a statement that it was aware of "a limited number" of targets

in the United Kingdom.

According to data from Shodan, a search engine that helps to

identify internet-linked equipment, over 8,000 servers online

could theoretically have already been compromised by hackers.

Those servers include major industrial firms, banks,

auditors, healthcare companies, and several U.S. state-level and

international government entities.

"The SharePoint incident appears to have created a broad

level of compromise across a range of servers globally," said

Daniel Card of British cybersecurity consultancy, PwnDefend.

"Taking an assumed breach approach is wise, and it's also

important to understand that just applying the patch isn't all

that is required here."

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Vietnam's VietJet to sign aircraft finance deal, boost cooperation with Boeing, document says
Vietnam's VietJet to sign aircraft finance deal, boost cooperation with Boeing, document says
Apr 4, 2025
HANOI (Reuters) - Vietnamese budget airline VietJet is set to sign a $200 million aircraft finance deal with a partner of investment fund KKR at a meeting in Washington next week attended by planemaker Boeing ( BA ), according to an internal schedule seen by Reuters. The programme, signed by VietJet head and dated March 31, was sent in a...
Trump tariffs, economic uncertainty fuel more settlements between CEOs and activists
Trump tariffs, economic uncertainty fuel more settlements between CEOs and activists
Apr 4, 2025
NEW YORK (Reuters) -Shares of Yeti Holdings ( YETI ) tumbled in December and again in March when President Donald Trump threatened tariffs against China, where the company had some of its biggest factories.  Behind the headlines, Yeti, the Austin, Texas-based maker of $300 coolers and $40 travel mugs, was facing another problem. Hedge fund Engaged Capital was pushing management...
Analysis-Wall Street searches for elusive signs that market bottom reached
Analysis-Wall Street searches for elusive signs that market bottom reached
Apr 4, 2025
NEW YORK (Reuters) - Investors are looking for signs the selling in the U.S. stock market may have reached a crescendo, but say that the check marks are not yet all ticked and there is room for further pain. President Donald Trump's announcement of sweeping tariffs on Wednesday extended U.S. stocks' selloff this year with the S&P 500 down 12%...
Google agrees $36 million fine for anti-competitive deals with Australia telcos
Google agrees $36 million fine for anti-competitive deals with Australia telcos
Aug 17, 2025
SYDNEY, Aug 18 (Reuters) - Google agreed on Monday to pay a A$55 million ($35.8 million) fine in Australia after the consumer watchdog found it had hurt competition by paying the country's two largest telcos to pre-install its search application on Android phones, excluding rival search engines. The fine extends a bumpy period for the Alphabet-owned internet giant in Australia,...
Copyright 2023-2026 - www.financetom.com All Rights Reserved