Tuesday, July 22, 2025

Creating liberating content

BENGALURU: Eternal-the listed parent of Zomato – posted a net

NEW DELHI: A parliamentary panel, headed by BJP leader Baijayant

MUMBAI: RBI has issued draft guidelines for digital banking channels,

NEW DELHI: Abu Dhabi Investment Authority (ADIA), UAE’s largest sovereign

Related News

BENGALURU: Eternal-the listed parent of Zomato – posted a net profit of Rs 25 crore, an over 90% decline from Rs 253 crore in the year-ago period, due to increased

NEW DELHI: A parliamentary panel, headed by BJP leader Baijayant Panda, has favoured continuing tax exemption on anonymous donations made to religious-cum-charitable trusts in the new Income Tax Bill, saying

MUMBAI: RBI has issued draft guidelines for digital banking channels, mandating stricter customer safeguards across all authorised banks. Banks have been asked to provide a choice between ‘view only’ and

NEW DELHI: Abu Dhabi Investment Authority (ADIA), UAE’s largest sovereign wealth fund, has entered into a definitive agreement to invest $200 million (around Rs 1,700 crore) for a 3% stake

BENGALURU: CoinDCX confirmed a $44 million security breach involving one of its internal operational accounts, marking the second-largest publicly known crypto hack at an Indian exchange. The company launched a

NEW DELHI: Even as the Aug 1 deadline set by Trump looms, a team of US negotiators will visit India only in the second half of Aug with top officials

Trending News

BENGALURU: Eternal-the listed parent of Zomato – posted a net profit of Rs 25 crore, an over 90% decline from Rs 253 crore in the year-ago period, due to increased

MUMBAI: RBI has issued draft guidelines for digital banking channels, mandating stricter customer safeguards across all authorised banks. Banks have been asked to provide a choice between ‘view only’ and

BENGALURU: CoinDCX confirmed a $44 million security breach involving one of its internal operational accounts, marking the second-largest publicly known crypto hack at an Indian exchange. The company launched a

NEW DELHI: Even as the Aug 1 deadline set by Trump looms, a team of US negotiators will visit India only in the second half of Aug with top officials

Markets regulator Sebi has once again warned investors against dabba trading, calling it illegal and urging the public to remain alert and avoid dealing with entities offering such unauthorised trading

Crypto thefts have crossed a staggering $2.17 billion in the first half of 2025, already eclipsing the full-year toll of 2024, according to blockchain analytics firm Chainalysis. The sharp spike

Microsoft releases emergency fix for Sharepoint after cyberattacks

Word Count: 298 | Estimated Reading Time: 2 minutes


Microsoft issued an emergency fix to close off a vulnerability in its SharePoint software that hackers have exploited to carry out widespread attacks on businesses and at least some federal agencies.

The software giant on Saturday said it was aware of “active attacks” that exploited vulnerabilities in the program, a product that allows companies and other businesses to create websites. 

The hackers breached U.S. federal and state agencies as well as universities and energy companies through the vulnerability, according to the Washington Post.

On Sunday, Microsoft updated its guidance with instructions to fix the problem for SharePoint Server 2019 and SharePoint Server Subscription Edition. Engineers were still working on a fix for the older SharePoint Server 2016 software.

The attack was a so-called “zero-day” exploit, or when hackers take advantage of a previously unknown vulnerability, often to steal sensitive data and passwords. The vulnerability also could allow hackers to access services connected to SharePoint, including OneDrive and Teams.

“Once inside, they can access all SharePoint content, system files, and configurations and move laterally across the Windows Domain,” noted Netherlands-based research company Eye Security in a research note about the breach.

It added, “Because SharePoint often connects to core services like Outlook, Teams, and OneDrive, a breach can quickly lead to data theft, password harvesting, and lateral movement across the network.”

Microsoft said in its blog post that it discovered at least dozens of systems were compromised around the world. Security engineers stated the attacks occurred in waves on July 18 and 19.

Although the scope of the attack is still being assessed, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that the impact could be widespread and recommended that any servers impacted by the exploit should be disconnected from the internet until they are patched.



Source link

Most Popular Articles

Sign In

Welcome ! Log into Your Account