Microsoft Warns of Active Attacks on SharePoint Software, Urges Immediate Updates

Jul 21, 2025

Microsoft has warned that hackers are actively targeting users of its SharePoint collaboration software. SharePoint is widely used by companies and government agencies for document sharing within organizations.

According to Microsoft, attackers are exploiting a security flaw in the software, which has resulted in breaches at thousands of organizations around the world. The company has released patches to fix the vulnerability for two versions of SharePoint, but one version remains without a fix and is still at risk.

Researchers believe the attacks are likely being conducted by a single group or individual. Microsoft is urging all businesses and organizations using SharePoint to apply the latest security updates as soon as possible to reduce the risk of data theft or further intrusions.

What is SharePoint?

SharePoint is a software from Microsoft used by companies and government agencies to share and manage documents and collaborate within teams.

What happened to SharePoint users?

A security flaw in SharePoint was found and has been exploited by hackers to access sensitive information in thousands of organizations.

What should SharePoint users do?

Microsoft recommends immediately applying the latest security updates to SharePoint to protect against these attacks.

Is every version of SharePoint protected?

Microsoft has released patches for two versions, but one version of SharePoint is still vulnerable and does not yet have a fix.

Sources
Why Microsoft Is Urging Security Updates for SharePoint Customers
Barrons
The company confirms ‘active attacks' targeting SharePoint Servers customers.
Microsoft server hack likely single actor, thousands of firms now vulnerable, re...
Reuters
A global attack on Microsoft server software used by thousands of government agencies and businesses to share documents within organisations is likely the work of a single actor, a cybersecurity researcher said on Monday.
Microsoft hit with SharePoint attack — one version still vulnerable
CNBC
Microsoft has alerted businesses and governments to "active attacks" on its popular SharePoint collaboration software. Patches have been issued for two versions of SharePoint software, while one version remains vulnerable.
Microsoft Stock Doesn't Shake on SharePoint Hack & MSFT Options Trade
Schwab Network
Monday morning, Microsoft (MSFT) warned that hackers were targeting customers through its SharePoint software services. Marley Kayden takes a closer look into the developing story and the extensive cybersecurity risk the hack poses.
Microsoft SharePoint breach exposes global firms to data theft
Invezz
Microsoft is racing to contain a critical security flaw in its SharePoint collaboration software that has already been exploited by threat actors to infiltrate thousands of organisations globally.
Microsoft SharePoint hack: An active cybersecurity incident could impact tens of...
Fast Company
On July 19, Microsoft alerted users that it was experiencing an active cyberattack on its SharePoint servers, which allow organizations to share and manage documents.
Britain's NCSC detects 'limited number' of UK victims in Microsoft hack campaign
Reuters
Britain's National Cyber Security Centre (NCSC) said on Monday it had detected a "limited number" of UK-based victims in an ongoing hacking campaign that has affected servers using Microsoft's SharePoint system.
Microsoft SharePoint's Hack: What We Know
Bloomberg Markets and Finance
Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the world and steal sensitive information, according to officials and cybersecurity researchers. Microsoft released a patch for the vulnerability in servers of the Sh...
Microsoft knew of SharePoint server exploit but failed to effectively patch it
Reuters
A security patch released by Microsoft last month failed to fully fix a critical flaw in U.S. tech giant's SharePoint server software that had been identified in May, opening the door to a sweeping global cyber espionage operation.
Microsoft says Chinese hacking groups exploited SharePoint vulnerability in atta...
CNBC
Microsoft said three hacking groups tied to China have tried to exploit a vulnerability that affected some versions of its SharePoint collaboration software. Attackers in China also sought to exploit a vulnerability in Microsoft's Exchange Server software four years ago.
Microsoft grapples with another security breach: The latest on the SharePoint at...
GeekWire
Microsoft is once again in the cybersecurity spotlight, acknowledging Tuesday morning that hackers linked to China are among those exploiting vulnerabilities in on-premises SharePoint software, the latest in a string of security problems that have plagued the tech giant.
Microsoft: Chinese Hackers Exploiting SharePoint Flaw
Bloomberg Technology
Microsoft accuses Chinese state-sponsored groups of exploiting flaws in its SharePoint document management software in a hacking campaign. Bloomberg's Jake Bleiberg joins Caroline Hyde and Ed Ludlow on “Bloomberg Tech”.
Chinese state hackers targeting Microsoft customers
TechXplore
Chinese state-sponsored hackers are actively exploiting critical security vulnerabilities in users of Microsoft's popular SharePoint servers to steal sensitive data and deploy malicious code, the US tech giant warned Tuesday.
Microsoft Says China-Linked Hackers Are Behind SharePoint Attacks. What to Know.
Barrons
The company first confirmed attacks on SharePoint Server customers over the weekend.
Microsoft Says Chinese Hackers Are Exploiting SharePoint Flaws
Bloomberg Markets and Finance
Microsoft accused two Chinese state-sponsored hackers of using flaws in its SharePoint document management software in a hacking campaign targeting global businesses and government agencies. Jeff Stone reports on Bloomberg Television.
Show All Sources
Related Posts
Other News
Back to Top