Microsoft has released emergency SharePoint security updates for two zero-day vulnerabilities tracked as CVE-2025-53770 and CVE-2025-53771 that have compromised services worldwide in “ToolShell” attacks. In May, during the Berlin Pwn2Own hacking contest, researchers exploited a zero-day vulnerability chain called “ToolShell,” which enabled them to achieve remote code execution in Microsoft SharePoint. These flaws were fixed as part of the July Patch …
Read More »Tag Archives: RCE
Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks – The Hacker News
Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks The Hacker News Global hack on Microsoft product hits U.S., state agencies, researchers say The Washington Post Microsoft alerts businesses, governments to server software attack Reuters Microsoft Server Software Comes Under Widespread Cyberattack (MSFT) Bloomberg.com Microsoft SharePoint servers under attack via zero-day vulnerability with no patch (CVE-2025-53770) Help Net Security Source link
Read More »