logo

US Nuclear Agency Hacked in Microsoft SharePoint Frenzy

ID: 886dd623-83ca-5aa3-a38c-ece48b80cd66

STIX ID: report--886dd623-83ca-5aa3-a38c-ece48b80cd66

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2025-07-23

Date Updated: 2026-04-21

Author: Kristina Beek

...
...

News brief: Microsoft SharePoint "ToolShell" zero-day vulnerabilities were exploited in the wild, enabling threat actors to breach systems at the U.S. National Nuclear Security Administration (NNSA). The agency reported a very small number of impacted systems and no known loss of classified data; Microsoft has linked some activity to Chinese nation-state groups (Linen Typhoon, Violet Typhoon, Storm-2603) and released patches and mitigations for CVE-2025-49706 and CVE-2025-49704.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.