Microsoft Issues Emergency Fix After Hackers Target SharePoint Servers In Active Attacks

<p>Tech giant Microsoft has issued urgent security patch after observing “active attacks” on server software used by government agencies and businesses to share documents within organisations.</p>
<p>According to Microsoft, the vulnerabilities apply only to SharePoint servers used within organisations. SharePoint Online in Microsoft 365, which is in the cloud, was not hit by the attacks, the organisation informed.</p>
<p>&ldquo;Microsoft is aware of active attacks targeting on-premises SharePoint Server customers by exploiting vulnerabilities partially addressed by the July Security Update,&rdquo; said the tech giant in ints security advisory.</p>
<p>The company recommended security updates that customers should apply immediately.</p>
<p>The US Federal Bureau of Investigation (FBI) also said it is aware of the attacks and is working closely with its federal and private-sector partners.</p>
<p><strong><a href=”Also Read : Benchmarks Sensex, Nifty Open Trading Session Nearly Flat As Trade Uncertainty Weighs Heavy On Markets”>Also Read : Benchmarks Sensex, Nifty Open Trading Session Nearly Flat As Trade Uncertainty Weighs Heavy On Markets</a></strong></p>
<p>The vulnerability is related to a case of remote code execution that arises due to the deserialization of untrusted data in on-premise versions of Microsoft SharePoint Server.</p>
<p>Microsoft said the current published content is correct and that the previous inconsistency does not impact the company’s guidance for customers.</p>
<p>”After applying the latest security updates above or enabling AMSI, it is critical that customers rotate SharePoint server ASP.NET machine keys and restart IIS on all SharePoint servers,” Microsoft said.</p>
<p>If you cannot enable AMSI, you will need to rotate your keys after you install the new security update, its added.</p>
<p>The US Cybersecurity and Infrastructure Security Agency (CISA) has added &lsquo;CVE-2025-53770&rsquo; vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by July 21, 2025.</p>
<p>Microsoft has released security updates that fully protect customers using SharePoint Subscription Edition and SharePoint 2019 against the risks posed by CVE-2025-53770, and CVE-2025-53771. Customers should apply these updates immediately to ensure they&rsquo;re protected, said the company in its security update.</p>
<p><em><strong>(This report has been published as part of the auto-generated syndicate wire feed. Apart from the headline, no editing has been done in the copy by ABP Live.)</strong></em></p>

About The Author

  • Related Posts

    Redmi Smartphone With High-Capacity Battery to Launch Soon in India; Could Be Redmi 15 5G

    Xiaomi has teased the upcoming launch of a new Redmi smartphone. The teasers highlight a focus on battery life, with claims of up to 7.5 hours standby on just 1…

    Google I/O Connect: Gemini 2.5 Flash Now Supports On-Shore Processing in India

    At the I/O Connect event, Google unveiled new tools aimed at supporting Indian developers. The brand announced that developers can now process its latest AI model, Gemini 2.5 Flash, in…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Inspired By Crime Shows, Border Force Jawan Robs Delhi Jewellery Shop Using Toy Gun

    • 1 views
    Inspired By Crime Shows, Border Force Jawan Robs Delhi Jewellery Shop Using Toy Gun

    Parliament Costs 2.5 Lakh Per Minute To Run. 3 Days Already Lost This Session

    • 1 views
    Parliament Costs 2.5 Lakh Per Minute To Run. 3 Days Already Lost This Session

    Opinion: Opinion | UK-India Trade Pact: The Empire, Finally, Shakes An Equal Hand

    • 1 views
    Opinion: Opinion | UK-India Trade Pact: The Empire, Finally, Shakes An Equal Hand

    “Father-In-Law Hugged Me”: Woman Sets Herself Ablaze, Alleges Harassment

    • 1 views
    “Father-In-Law Hugged Me”: Woman Sets Herself Ablaze, Alleges Harassment

    Narendra Modi UK Visit LIVE: PM Modi Leaves For 2-Day UK Visit, Trade Agreement, Khalistanis On Agenda

    • 1 views
    Narendra Modi UK Visit LIVE: PM Modi Leaves For 2-Day UK Visit, Trade Agreement, Khalistanis On Agenda

    Redmi Smartphone With High-Capacity Battery to Launch Soon in India; Could Be Redmi 15 5G

    • 1 views
    Redmi Smartphone With High-Capacity Battery to Launch Soon in India; Could Be Redmi 15 5G