Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

7 June 2026
America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one

America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one

7 June 2026
Rule-Followers Will Lose To AI While The Poor And Bold Win Big

Rule-Followers Will Lose To AI While The Poor And Bold Win Big

7 June 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » Microsoft Confirms Ongoing Mass SharePoint Attack — No Patch Available
Innovation

Microsoft Confirms Ongoing Mass SharePoint Attack — No Patch Available

Press RoomBy Press Room21 July 20255 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
Microsoft Confirms Ongoing Mass SharePoint Attack — No Patch Available

Update, July 21, 2025: This story, originally published on July 20, has been updated to include additional expert comments regarding the global zero-day attack impacting Microsoft on-premise SharePoint Server users, as well as the latest information and advice from Microsoft itself, along with a warning from CISA.

Microsoft users are, once again, under attack. This time, the threat is not restricted to Outlook users, or involves a Windows browser-based security bypass, and unlike the recent Windows authentication relay attack vulnerability, there is no patch, no magic update, to remedy this one. Which is bad news for Microsoft SharePoint Server users, as CVE-2025-53770 is currently under confirmed “mass attack” and on-premises servers across the world are being compromised. Here’s what you need to know and do.

Microsoft Confirms CVE-2025-53770 SharePoint Server Attacks

It’s been quite the few weeks for security warnings, what with Amazon informing 220 million customers of Prime account attacks, and claims of a mass hack of Ring doorbells going viral. The first of those can be mitigated by basic security hygiene, and the latter appears to be a false alarm. The same cannot be said for CVE-2025-53770, a newly uncovered and confirmed attack against users of SharePoint Server which is currently undergoing mass exploitation on a global level, according to the Eye Security experts who discovered it. Microsoft, meanwhile, has admitted that not only is it “aware of active attacks” but, worryingly, “a patch is currently not available for this vulnerability.”

CVE-2025-53770, which is also being called ToolShell, is a critical vulnerability in on-premises SharePoint. The end result of which is the ability for attackers to gain access and control of said servers without authentication. If that sounds bad, it’s because it is. Very bad indeed.

“The risk is not theoretical,” the researchers warned, “attackers can execute code remotely, bypassing identity protections such as MFA or SSO.” Once they have, they can then “access all SharePoint content, system files, and configurations and move laterally across the Windows Domain.”

And then there’s the theft of cryptographic keys. That can enable an attacker to “impersonate users or services,” according to the report, “even after the server is patched.” So, even when a patch is eventually released, and I would expect an emergency update to arrive fairly quickly for this one, the problem isn’t solved. You will, it was explained, “need to rotate the secrets allowing all future tokens that can be created by the malicious actor to become invalid.”

And, of course, as SharePoint will often connect to other core services, including the likes of Outlook and Teams, oh and not forgetting OneDrive, the threat, if exploited, can and will lead to “data theft, password harvesting, and lateral movement across the network,” the researchers warned.

CISA Adds Microsoft SharePoint Vulnerability To KEV Catalog

The Cybersecurity and Infrastructure Security Agency has already added CVE-2025-53770 to the Town Exploited Vulnerabilities Catalog, and action that, in accordance with Binding Operational Directive 22-01, mandates U.S. Federal Civilian Executive Branch agencies to remediate the threat within 21 days. “Although BOD 22-01 only applies to FCEB agencies,” CISA said, “CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation.” Given that no patch is yet available, that could mean taking drastic action and pulling the internet plug to remove connectivity from SharePoint servers.

Security Experts Warn Government, Schools And Hospitals At Immediate Risk From Microsoft SharePoint Exploit

“While cloud environments remain unaffected,” Michael Sikorski, head of threat intelligence for Unit 42 at Palo Alto Networks, said, “on-prem SharePoint deployments, particularly within government, schools, healthcare including hospitals, and large enterprise companies, are at immediate risk.” The attackers are, Sikorski confirmed, exfiltrating data, deploying backdoors, and stealing cryptographic keys. “If you have SharePoint on-prem exposed to the internet, you should assume that you have been compromised at this point.”

“CVE-2025-53770 is more than just another SharePoint flaw,” Rik Ferguson, vice president of security intelligence at Forescout, warned, “it’s a case study in what happens when legacy trust models meet modern threat actors.” Explaining that authenticated users should never be considered safe entities by default, Ferguson said that CVE-2025-53770, in effect, provides code execution ability without requiring any elevated privileges whatsoever. “For CISOs,” Ferguson concluded, “this highlights a critical point: If your security posture still relies on perimeter trust or the assumption that credentialed access equals safety, then it is time to reassess.”

Mitigating The Microsoft SharePoint Server Attacks

While the Microsoft Security Response Center has stated that it is “actively working to release a security update,” and will “provide additional details as they are available,” there is no patch at the time of writing. In the meantime, it advised that customers should apply the following mitigations:”

Configure Antimalware Scan Interface integration in SharePoint and deploy Defender AV on all SharePoint servers. “If you cannot enable AMSI,” Microsoft said, “we recommend you consider disconnecting your server from the internet until a security update is available.”

I have approached Microsoft for a statement and will update this story with any further developments. In the meantime, Microsoft has confirmed that the issue only applies to on-premises Microsoft SharePoint Servers only, with SharePoint Online in Microsoft 365 not impacted.

CVE-2025-53770 Eye Research Microsoft confirms SharePoint attack Microsoft SharePoint Warning SharePoint SharePoint attack SharePoint Hack SharePoint Hack Attack SharePoint Server Hack
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

7 June 2026
Rule-Followers Will Lose To AI While The Poor And Bold Win Big

Rule-Followers Will Lose To AI While The Poor And Bold Win Big

7 June 2026
‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

7 June 2026
The Weight Of Intelligence By Satish Viswanathan

The Weight Of Intelligence By Satish Viswanathan

7 June 2026
Anthropic Declares That The Next Big Step For Humans And AI Is AI That Builds Itself Via Recursive Self-Improvement

Anthropic Declares That The Next Big Step For Humans And AI Is AI That Builds Itself Via Recursive Self-Improvement

7 June 2026
Sunday, June 7 Clues And Answers

Sunday, June 7 Clues And Answers

7 June 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Exclusive: DeFi platform Azura launches after raising .9 million from Initialized

Exclusive: DeFi platform Azura launches after raising $6.9 million from Initialized

22 October 2024
Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

22 October 2024
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

7 June 20262 Views
Retiring at 62 costs the average American 0,000. Here’s the math (and the neuroscience) that explain why

Retiring at 62 costs the average American $250,000. Here’s the math (and the neuroscience) that explain why

7 June 20262 Views
The Weight Of Intelligence By Satish Viswanathan

The Weight Of Intelligence By Satish Viswanathan

7 June 20263 Views
This realtor is betting big on the AI IPO boom, but OpenAI and Anthropic have to approve first

This realtor is betting big on the AI IPO boom, but OpenAI and Anthropic have to approve first

7 June 20262 Views

Recent Posts

  • Why Do Humans Get Dizzy? An Evolutionary Biologist Explains
  • America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one
  • Rule-Followers Will Lose To AI While The Poor And Bold Win Big
  • Quiet financial stress is gnawing at 216 million Americans, Edward Jones data shows
  • ‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

Why Do Humans Get Dizzy? An Evolutionary Biologist Explains

7 June 2026
America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one

America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one

7 June 2026
Rule-Followers Will Lose To AI While The Poor And Bold Win Big

Rule-Followers Will Lose To AI While The Poor And Bold Win Big

7 June 2026
Most Popular
Quiet financial stress is gnawing at 216 million Americans, Edward Jones data shows

Quiet financial stress is gnawing at 216 million Americans, Edward Jones data shows

7 June 20263 Views
‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

‘Good Smile Fest 2026’ Shows Off ‘Dandivine’ And Reveals ‘Dancouga Liberation’

7 June 20262 Views
Retiring at 62 costs the average American 0,000. Here’s the math (and the neuroscience) that explain why

Retiring at 62 costs the average American $250,000. Here’s the math (and the neuroscience) that explain why

7 June 20262 Views

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.