Microsoft Cyberattack Hits 100 Organisations, Say Security Firms

KABUL (Agencies): A sophisticated cyber espionage campaign targeting Microsoft’s SharePoint server software has compromised approximately 100 organisations worldwide, cybersecurity experts revealed on Monday.

The large-scale intrusion exploits a previously unknown vulnerability — known as a “zero-day” exploit — enabling attackers to infiltrate self-hosted SharePoint servers and potentially install backdoors for long-term access. Cloud-hosted SharePoint services remain unaffected.

The breach was initially discovered by Eye Security, a Netherlands-based cybersecurity firm, which identified unusual activity in one of its clients’ systems on Friday. A subsequent internet scan conducted in collaboration with the Shadowserver Foundation revealed nearly 100 compromised organisations — even before the exploit details became publicly known.

“It’s unambiguous,” said Vaisha Bernard, Chief Hacker at Eye Security. “Who knows what other adversaries have done since to place other backdoors.”

While Bernard declined to name the affected entities, he confirmed that national cybersecurity authorities had been notified. Shadowserver confirmed the estimate, adding that most victims were located in the United States and Germany, including government agencies.

A researcher from Sophos, a UK-based cybersecurity firm, noted the operation currently appears to be the work of a single threat actor or hacking group, though that could change rapidly.

“The SharePoint incident appears to have created a broad level of compromise across a range of servers globally,” said Daniel Card of British consultancy PwnDefend. “Taking an assumed-breach approach is wise. Simply applying the patch is not enough.”

Potentially Thousands at Risk

Data from Shodan, a search engine for internet-connected devices, suggests more than 8,000 vulnerable servers could theoretically have been targeted. These include servers belonging to major industrial firms, financial institutions, healthcare providers, auditors, and multiple government agencies, including U.S. state-level entities.

On Saturday, Microsoft issued a security advisory warning of “active attacks” and urged users to install the released security updates. A Microsoft spokesperson reiterated that customers are strongly encouraged to apply the patches.

The FBI confirmed it is aware of the breaches and is coordinating with public and private sector partners. Similarly, the UK’s National Cyber Security Centre acknowledged “a limited number” of targets within the United Kingdom.

Despite the potential scale of the breach, Microsoft’s stock remained steady, gaining 0.06% as of 3:00 PM (New York time), and rising over 1.5% in the past five days of trading.

Support Dawat Media Center

If there were ever a time to join us, it is now. Every contribution, however big or small, powers our journalism and sustains our future. Support the Dawat Media Center from as little as $/€10 – it only takes a minute. If you can, please consider supporting us with a regular amount each month. Thank you
DNB Bank AC # 0530 2294668
Account for international payments: NO15 0530 2294 668
Vipps: #557320

  Donate Here

admin

Recent Posts

From Escalation to De escalation: A Strategic Analysis of Indirect Negotiations between Washington and Tehran

The relationship between the United States and Iran has long exhibited a recurring strategic pattern…

4 hours ago

Floods and Heavy Rains Kill 179 in Afghanistan, 22 Dead in Past 24 Hours

KABUL – Severe flooding and relentless heavy rains have now killed at least 179 people…

4 hours ago

US and Iran Fail to Reach Deal After Marathon Peace Talks in Pakistan; Fragile Ceasefire at Risk

ISLAMABAD – The United States and Iran failed to reach an agreement to end their six-week-long…

4 hours ago

Diplomatic Row Erupts as South Korean President Accuses Israel of ‘Inhumane Acts,’ Israel Retorts with ‘Disinformation’ and ‘Holocaust Trivialization’

Diplomatic Row Erupts as South Korean President Accuses Israel of ‘Inhumane Acts,’ Israel Retorts with…

17 hours ago

Ending Israel’s War on Peace

The two-week ceasefire has resulted in a partial freeze of the Israeli-American war on Iran…

18 hours ago

Pakistan’s Double Game: A Mediator No One Should Trust

Pakistan has suddenly attempted to position itself as the diplomatic center of the latest crisis…

20 hours ago