Sign In

Delhi News Daily

  • Home
  • Fashion
  • Business
  • World News
  • Technology
  • Sports
  • Politics
  • Lifestyle
  • Entertainment
Reading: Microsoft Knew of SharePoint Security Flaw, Timeline Shows – Delhi News Daily
Share

Delhi News Daily

Font ResizerAa
Search
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Delhi News Daily > Blog > Technology > Microsoft Knew of SharePoint Security Flaw, Timeline Shows – Delhi News Daily
Technology

Microsoft Knew of SharePoint Security Flaw, Timeline Shows – Delhi News Daily

delhinewsdaily
Last updated: July 24, 2025 4:15 am
delhinewsdaily
Share
Microsoft Knew of SharePoint Security Flaw but Failed to Effectively Patch It, Timeline Shows
SHARE


A security patch Microsoft released this month failed to fully fix a critical flaw in the US tech giant’s SharePoint server software, opening the door to a sweeping global cyber espionage effort, a timeline reviewed by Reuters shows.

On Tuesday, a Microsoft spokesperson confirmed that its initial solution to the flaw, identified at a hacker competition in May, did not work, but added that it released further patches that resolved the issue.

It remains unclear who is behind the spy effort, which targeted about 100 organisations over the weekend, and is expected to spread as other hackers join the fray.

In a blog post Microsoft said two allegedly Chinese hacking groups, dubbed “Linen Typhoon” and “Violet Typhoon,” were exploiting the weaknesses, along with a third, also based in China.

Microsoft and Alphabet’s Google have said China-linked hackers were probably behind the first wave of hacks.

Chinese government-linked operatives are regularly implicated in cyberattacks, but Beijing routinely denies such hacking operations.

In an emailed statement, its embassy in Washington said China opposed all forms of cyberattacks, and “smearing others without solid evidence.”

The vulnerability opening the way for the attack was first identified in May at a Berlin hacking competition organised by cybersecurity firm Trend Micro that offered cash bounties for finding computer bugs in popular software.

It offered a $100,000 prize for so-called “zero-day” exploits that leverage previously undisclosed digital weaknesses that could be used against SharePoint, Microsoft’s flagship document management and collaboration platform.

The US National Nuclear Security Administration, charged with maintaining and designing the nation’s cache of nuclear weapons, was among the agencies breached, Bloomberg News said on Tuesday, citing a person with knowledge of the matter.

No sensitive or classified information is known to have been compromised, it added.

The US Energy Department, the US Cybersecurity and Infrastructure Security Agency, and Microsoft did not immediately respond to Reuters’ requests for comment on the report.

A researcher for the cybersecurity arm of Viettel, a telecoms firm run by Vietnam’s military, identified a SharePoint bug at the May event, dubbed it “ToolShell” and demonstrated a way to exploit it.

The discovery won the researcher an award of $100,000, an X posting by Trend Micro’s “Zero Day Initiative” showed.

Participating vendors were responsible for patching and disclosing security flaws in “an effective and timely manner,” Trend Micro said in a statement.

“Patches will occasionally fail,” it added. “This has happened with SharePoint in the past.”

In a July 8 security update Microsoft said it had identified the bug, listed it as a critical vulnerability, and released patches to fix it.

About 10 days later, however, cybersecurity firms started to notice an influx of malicious online activity targeting the same software the bug sought to exploit: SharePoint servers.

“Threat actors subsequently developed exploits that appear to bypass these patches,” British cybersecurity firm Sophos said in a blog post on Monday.

The pool of potential ToolShell targets remains vast.

Hackers could theoretically have already compromised more than 8,000 servers online, data from search engine Shodan, which helps identify internet-linked equipment, shows.

Such servers were in networks ranging from auditors, banks, healthcare companies and major industrial firms to U.S. state-level and international government bodies.

The Shadowserver Foundation, which scans the internet for potential digital vulnerabilities, put the number at a little more than 9,000, cautioning that the figure is a minimum.

It said most of those affected were in the United States and Germany.

Germany’s federal office for information security, BSI, said on Tuesday it had found no compromised SharePoint servers in government networks, despite some being vulnerable to the ToolShell attack.

© Thomson Reuters 2025



Source link

Share This Article
Twitter Email Copy Link Print
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Ozzy Osbourne’s Funeral Demand EXPOSED | No Tears, No Drama – His Final DEMAND – Delhi News Daily
Next Article News18 Next Vice President To Be From BJP, Final Call After PM Modi’s Return: Top NDA Sources – Delhi News Daily
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • ‘Abuse Of Power’: BJP Targets Karnataka Govt Over Throwaway Land Allotment For Congress Offices – Delhi News Daily
  • ETMarkets PMS Talk | Gold allocation and dynamic hedging helped QAW beat Nifty in January selloff: Rishabh Nahar of Qode Advisors – Delhi News Daily
  • Salim Khan health update: Doctors clarify that legendary Sholay and Deewar writer was not in critical condition as reported | – The Times of India – Delhi News Daily
  • Setback For BJP In Bhiwandi As 9 Corporators Extend Support To Congress For Mayoral Polls – Delhi News Daily
  • Netweb Tech shares jump 14% after launch of ‘Make in India’ AI supercomputing systems powered by NVIDIA – Delhi News Daily

Recent Comments

No comments to show.

You Might Also Like

Netherland’s ASML Is the Most Important Company Behind the Global Rise of AI: 5 Things You Should Know
Technology

Gemini and ChatGPT Would Not Exist Without This Dutch Company: Know Why – Delhi News Daily

ASML or Advanced Semiconductor Materials Lithography, a Netherlands-based multinational corporation, is perhaps the most important tech company in human history.…

6 Min Read
Samsung Galaxy Buds Core Listed on Company Site; Design, Specifications Revealed
Technology

Samsung Galaxy Buds Core Listed Online, Revealing Design, Specifications – Delhi News Daily

Samsung is expected to launch the Galaxy Buds Core true wireless stereo (TWS) earphones soon alongside the next generation foldable…

1 Min Read
Global Tablet Shipments Surge 13.1 Percent YoY in Q2, Apple Maintains Lead: IDC
Technology

Apple Leads as Global Tablet Shipments Grew 13.1 Percent in Q2: IDC – Delhi News Daily

Global tablet shipments rose by 13.1 percent year-over-year in the second quarter of 2025, as per a report by International…

4 Min Read
Two Spacecraft Recreate Artificial Solar Eclipses to Observe the Sun’s Superhot Corona
Technology

Two Spacecraft Recreate Artificial Solar Eclipses to Observe the Sun’s Superhot Corona – Delhi News Daily

Two spacecraft have achieved a rare milestone: recreating a total solar eclipse in space. The European Space Agency's (ESA) Proba-3…

3 Min Read

Delhi News Daily

© Delhi News Daily Network.

Incognito Web Technologies

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?