
The Microsoft company said, these attacks are already happening, and the software are being targeted is commonly used inside organizations. Microsoft has advised that all users have to install the latest security updates right away to protect their systems and to stop the attackers.
The FBI confirmed on Sunday that it is aware of the ongoing cyberattacks and is working closely with both government agencies and private companies to respond to the threat. However, the agency did not share more details about the investigation.
Microsoft warned that hackers are targeting SharePoint servers, but confirmed that SharePoint Online in Microsoft 365 is not affected.
Cybersecurity experts are concerned because many organizations rely on SharePoint to manage and store sensitive information. If not patched quickly, these security problems could let hackers steal data or break the system.
Also Read: China begins construction of the world s first super dam
The Washington Post, which was the first to report the incident, said that unknown hackers recently took advantage of a security flaw in server software to launch cyberattacks. These attacks targeted both U.S. and international government agencies and private businesses, putting many organizations at risk.
Experts described it as a zero-day attack, which means the hackers found a vulnerability that no one knew about before, and used it before the company could fix it. According to reports, tens of thousands of servers could be affected if quick action isn’t taken.
Microsoft hasn’t commented yet but said the flaw lets hackers already inside the system pretend to be trusted users, potentially tricking companies or agencies.
To help protect users, Microsoft has released a security update for SharePoint Subscription Edition and is urging all customers to install it immediately.
The company also said on Sunday, we are working on updates for older versions of SharePoint, including 2016 and 2019 editions. Until those updates are ready, Microsoft advises that if users can’t turn on their recommended security settings, they should disconnect their SharePoint servers from the internet to stay safe from attacks.
This warning highlights the urgency and seriousness of the issue, especially since SharePoint is widely used by organizations to manage sensitive data and internal documents.