Another massive security snafu hits Microsoft, but don't expect it to stick
ID: 4775e39f-073d-5f9d-8975-d8db0e4f481e
STIX ID: report--4775e39f-073d-5f9d-8975-d8db0e4f481e
Feed Name: The Register (Security)
Active, high-severity exploitation of a SharePoint Server zero-day (CVE-2025-53770, "ToolShell") has been observed since early July; attackers achieve unauthenticated RCE to take over servers, exfiltrate sensitive data, deploy persistent backdoors, and steal cryptographic keys. Targets include governments, telecommunications, education, critical infrastructure, and software companies across multiple countries; security vendors and CISA/UK NCSC have issued alerts and mitigations, but patches are incomplete and widespread compromise is reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
