CISA Warns of New Exploit Targeting Microsoft SharePoint

CISA Warns of New Exploit Targeting Microsoft SharePoint

Hackers Exploit Microsoft SharePoint Servers; CISA Issues Urgent Warning

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert warning organizations of an active exploitation campaign targeting on-premises Microsoft SharePoint servers. According to CISA’s July 20 report, the attack—known publicly as “ToolShell”—takes advantage of server vulnerabilities to grant attackers full access to internal systems.

“This exploitation activity… provides unauthenticated access to systems and enables malicious actors to fully access SharePoint content,” CISA said in its July 20 report. The agency is currently assessing the full impact of the breach.

Microsoft acknowledged the threat on July 19, confirming that only on-premises servers are affected—SharePoint Online on Microsoft 365 is not at risk. Updates have been released for SharePoint Subscription Edition and SharePoint 2019, while patches for SharePoint 2016 are pending.

Both CISA and Microsoft urge system administrators to install the latest security updates, enable Antimalware Scan Interface (AMSI), and deploy Microsoft Defender for Endpoint. In cases where AMSI cannot be activated, CISA recommends temporarily disconnecting affected systems from the internet.

The exploit, listed under CVE-2025-49706, has been added to CISA’s Known Exploited Vulnerabilities catalog. Organizations are encouraged to review their logging practices, reduce administrative privileges, and follow Microsoft’s advanced mitigation strategies.

With over 200,000 organizations relying on SharePoint globally, the attack underscores growing cybersecurity challenges. CISA further warned of increasing threats to cloud infrastructure, calling for enhanced public-private cooperation to defend digital assets.

Related Posts
Brady earns MLS Team of the Matchday honor
Chicago Fire FC goalkeeper Chris Brady has been named to the Major League Soccer Team
United adds tiered pricing to premium cabins
United Airlines is introducing a new tiered pricing model for its premium cabins, expanding customer
McDonald’s revamps value menu with $3 items
McDonald’s is reshaping its value strategy, introducing a simplified menu featuring items priced under $3
Utah eyes sweep of road trip vs struggling Canucks
The Utah Mammoth is closing in on a playoff berth and will look to complete
Oilers find form with win streak before Blackhawks clash
The Edmonton Oilers appear to be addressing long-standing concerns at a critical point in the
Illinois lead pipes: health crisis, 90K jobs
Illinois’ 1.5 million toxic lead service lines are increasingly viewed not only as a public
Griezmann Eyes Orlando City Move This Summer
French forward Antoine Griezmann is reportedly closing in on a move to Major League Soccer
Musk Plans Dual Chip Fabs in Texas for AI, Tesla
Elon Musk said on March 22 that SpaceX and Tesla plan to build two advanced
Stars Host Slumping Golden Knights Amid Hot Streak
The Dallas Stars will try to extend their strong run when they host the Vegas
Mother Charged After Girls Found in Suitcases in Cleveland
A Cleveland woman has been charged with two counts of aggravated murder after authorities discovered