financetom
Technology
financetom
/
Technology
/
Microsoft server hack likely single actor, thousands of firms now vulnerable, researchers say
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Microsoft server hack likely single actor, thousands of firms now vulnerable, researchers say
Jul 21, 2025 6:38 AM

LONDON (Reuters) -A global attack on Microsoft server software used by thousands of government agencies and businesses to share documents within organisations is likely the work of a single actor, a cybersecurity researcher said on Monday.

Microsoft on Saturday issued an alert about "active attacks" on SharePoint servers used within organisations. It said that SharePoint Online in Microsoft 365, which is in the cloud, was not hit by the exploit, also known as a "zero day" because it was previously unknown to cybersecurity researchers.

"Based on the consistency of the tradecraft seen across observed attacks, the campaign launched on Friday appears to be a single actor. However, it's possible that this will quickly change," Rafe Pilling, Director of Threat Intelligence at Sophos, a British cybersecurity firm.

That tradecraft included the sending of the same digital payload to multiple targets, Pilling added.

Microsoft said it had "provided security updates and encourages customers to install them," a company spokesperson said in an emailed statement.

It was not clear who was behind the ongoing hack. The FBI said on Sunday it was aware of the attacks and was working closely with its federal and private-sector partners, but offered no other details. Britain's National Cyber Security Centre did not immediately respond to a request for comment.

The Washington Post said unidentified actors in the past few days had exploited a flaw to launch an attack that targeted U.S. and international agencies and businesses.

According to data from Shodan, a search engine that helps to identify internet-linked equipment, over 8,000 servers online could theoretically have already been compromised by hackers.

Those servers include major industrial firms, banks, auditors, healthcare companies, and several U.S. state-level and international government entities.

"The SharePoint incident appears to have created a broad level of compromise across a range of servers globally," said Daniel Card of British cybersecurity consultancy, PwnDefend. 

"Taking an assumed breach approach is wise, and it's also important to understand that just applying the patch isn't all that is required here."

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Gold price witnesses fluctuated trading -Analysis-30-06-2025
Gold price witnesses fluctuated trading -Analysis-30-06-2025
Jun 29, 2025
The (Gold) price declined in its last intraday trading amid fluctuated trading, where it reached our previous target at $3,250 support level in the beginning of this week, this decline let the price gain some positive momentum, which assisted it to rebound higher and shrink big part of its early losses. This rebound reinforces the beginning of forming positive divergence...
This Everyday Investor Built a $2 Million Portfolio From Just One Stock — Here's the Company
This Everyday Investor Built a $2 Million Portfolio From Just One Stock — Here's the Company
Jun 29, 2025
In a bold move that defies traditional investment advice, an everyday investor named Etienne Breton has built a $2 million portfolio by investing exclusively in software firm Palantir ( PLTR ) . What Happened: Breton began buying Palantir ( PLTR ) shares shortly after the company’s public debut in late 2020. Despite the stock’s initial struggles, he persisted in expanding his position....
US DOJ settles antitrust case for HPE's $14 billion takeover of Juniper
US DOJ settles antitrust case for HPE's $14 billion takeover of Juniper
Jun 28, 2025
June 28 (Reuters) - The U.S. Department of Justice has settled its lawsuit challenging server maker Hewlett Packard Enterprise's ( HPE ) all-cash acquisition of Juniper Networks ( JNPR ) for $14 billion, according to court filings. The settlement requires the combined company to divest HPE's Instant On wireless networking business and license the source code for Juniper's Mist AI...
US DOJ settles antitrust case for HPE's $14 billion takeover of Juniper
US DOJ settles antitrust case for HPE's $14 billion takeover of Juniper
Jun 28, 2025
(Reuters) -The U.S. Department of Justice has settled its lawsuit challenging server maker Hewlett Packard Enterprise's ( HPE ) all-cash acquisition of Juniper Networks ( JNPR ) for $14 billion, according to court filings. The settlement requires the combined company to divest HPE's Instant On wireless networking business and license the source code for Juniper's Mist AI software used in...
Copyright 2023-2025 - www.financetom.com All Rights Reserved