Microsoft SharePoint victim count hits 400+ orgs in ongoing attacks
ID: 7cc865b5-1c53-5b63-b0a2-5c46514a3c8c
STIX ID: report--7cc865b5-1c53-5b63-b0a2-5c46514a3c8c
Feed Name: The Register (Security)
Threat Score
*Executive summary:* Multiple critical SharePoint Server vulnerabilities (CVE-2025-53770 and CVE-2025-53771) were actively exploited in a multi-wave campaign beginning in July, compromising over 400 organizations — including US government and critical infrastructure — with public proof-of-concept code released and attribution to Chinese-affiliated threat actors; Microsoft issued fixes after the attacks were observed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
