SUBSCRIBE
Tech Journal Now
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
Reading: Microsoft SharePoint zero-day breach hits on-prem servers
Share
Tech Journal NowTech Journal Now
Font ResizerAa
  • News
  • Reviews
  • Guides
  • AI
  • Best Buy
  • Games
  • Software
Search
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Tech Journal Now > Software > Microsoft SharePoint zero-day breach hits on-prem servers
Software

Microsoft SharePoint zero-day breach hits on-prem servers

News Room
Last updated: July 21, 2025 12:31 pm
News Room
Share
1 Min Read
SHARE

As part of the exploitation, attackers upload a file named “spinstall0.aspx,” which is used to steal the Microsoft SharePoint server’s MachineKey configuration, including the ValidationKey and DecryptionKey, security researchers reported. “Once this cryptographic material is leaked, the attacker can craft fully valid, signed __VIEWSTATE payloads,” Eye Security explained in its analysis.

Dutch cybersecurity firm Eye Security, which first identified the mass exploitation campaign, discovered the attacks began systematically targeting vulnerable servers on July 18, around 6:00 PM Central European Time. “Within hours, we identified more than dozens of separate servers compromised using the exact same payload at the same filepath,” Eye Security researchers said in their analysis.

The severity of the threat prompted rapid federal action, with CISA adding CVE-2025-53770 to its Known Exploited Vulnerabilities catalog on Sunday, just two days after active exploitation was confirmed. “BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats,” the agency noted in its advisory, giving federal agencies until July 21 to implement mitigations.

Read the full article here

You Might Also Like

Welcome to the new world of risk: Microsoft cuts off services to energy company without notice

Hybrid Exchange environment vulnerability needs fast action

Microsoft will stop using Chinese workers on US DoD systems

IT buyers are investing in AI PCs — with no clue how to use them – Computerworld

8 fast fixes for common Google Drive problems – Computerworld

Share This Article
Facebook Twitter Email Print
Leave a comment Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Trending Stories

Games

I would enjoy Everybody’s Golf Hot Shots a lot more if everyone stopped YELLING AT ME

September 6, 2025
Games

Today’s Wordle clues, hints and answer for September 6 (#1540)

September 6, 2025
Games

Is Silksong everything we hoped? 5 PC Gamer writers react to the first hours of Team Cherry’s extraordinarily hyped sequel

September 6, 2025
Games

Starfield fans are pretty sure Bethesda just dropped the first teaser for the game’s second expansion: ‘We look forward to the adventures yet to come’

September 6, 2025
Games

Silksong players stuck in Far Fields: Here’s how to get out

September 6, 2025
AI

Why Apple MDM is a business investment, not a cost – Computerworld

September 5, 2025

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Follow US on Social Media

Facebook Youtube Steam Twitch Unity

2024 © Prices.com LLC. All Rights Reserved.

Tech Journal Now

Quick Links

  • Privacy Policy
  • Terms of use
  • For Advertisers
  • Contact
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?