logo

Another massive security snafu hits Microsoft, but don't expect it to stick

ID: 4775e39f-073d-5f9d-8975-d8db0e4f481e

STIX ID: report--4775e39f-073d-5f9d-8975-d8db0e4f481e

Feed Name: The Register (Security)

Threat Score
92/100

Date Published: 2025-07-21

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Active, high-severity exploitation of a SharePoint Server zero-day (CVE-2025-53770, "ToolShell") has been observed since early July; attackers achieve unauthenticated RCE to take over servers, exfiltrate sensitive data, deploy persistent backdoors, and steal cryptographic keys. Targets include governments, telecommunications, education, critical infrastructure, and software companies across multiple countries; security vendors and CISA/UK NCSC have issued alerts and mitigations, but patches are incomplete and widespread compromise is reported.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.