Get the latest tech news

SharePoint vulnerability with 9.8 severity rating under exploit across globe


Ongoing attacks are allowing hackers to steal credentials giving privileged access.

Authorities and researchers are sounding the alarm over the active mass exploitation of a high-severity vulnerability in Microsoft SharePoint Server that’s allowing attackers to make off with sensitive company data, including authentication tokens used to access systems inside networks. Installing the updates is only the beginning of the recovery process, since the infections allow attackers to make off with authentication credentials that give wide access to a variety of sensitive resources inside a compromised network. Eye Security researchers said that the backdoor was able to gain access to the most sensitive parts of a SharePoint Server and from there extract tokens that allowed them to execute code that let the attackers to expand their reach inside networks.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of Exploit

Exploit

Photo of globe

globe

Photo of SharePoint

SharePoint

Related news:

News photo

Hackers exploiting SharePoint zero-day seen targeting government agencies

News photo

Microsoft fixes two SharePoint zero-days under attack, but it's not over - how to patch

News photo

Microsoft patches under-attack SharePoint 2019 and SE