#SharePoint
18 stories taggedSharePoint.

TWINLOOT Malware Hides Inside Microsoft's Own Cloud to Steal Passwords
A newly discovered piece of malicious software uses Microsoft SharePoint, Teams, and Edge to run its operation, making it nearly invisible to the tools most companies rely on.

Microsoft 365 search breaks for some users after botched deployment
A recent update inside Microsoft's own infrastructure hogged resources, leaving Outlook, SharePoint and OneDrive users unable to search their files and mail.

Ransomware crews are now breaking into SharePoint servers through a May flaw
CISA says criminals are using CVE-2026-45659 to plant ransomware on unpatched Microsoft SharePoint servers. Over 200 remain exposed online.

A Single Click Could Have Handed Hackers Your Company's Confluence and Jira Files
Researchers found a flaw in Atlassian's Rovo AI assistant that let an attacker steal data from widely used workplace tools with almost no effort from the victim.

Swiss federal IT office says SharePoint breach exposed 200 accounts
The BIT breach lines up with the July SharePoint bug wave, though attribution remains open.

Microsoft 365 hit by outage knocking out Teams, SharePoint and Excel
Downdetector logged more than 2,400 user reports as Microsoft opened incident MO1437424 and began investigating.

A Week When Small Inputs Caused Big Damage
WordPress code execution, SonicWall zero-days, attacks on AI services, and a fresh SharePoint flaw defined a punishing seven days for defenders.

CISA sounds alarm on SharePoint Server flaws being used to break in right now
The US cyber agency says attackers are chaining three unpatched holes in self-hosted SharePoint to bypass logins, run code and stay hidden. Nearly 10,000 servers sit exposed online.

569 Patches in One Month: Microsoft Just Broke Every Record on the Books
AI tools are finding software flaws faster than any human team ever could. The result is a single monthly update that dwarfs every full year of fixes from the past two decades.

Microsoft's July 2026 Patch Tuesday Is the Biggest Ever, 622 Fixes at Once
AI tools are finding software flaws faster than companies can fix them. This month's update from Microsoft shows exactly what that looks like in practice.

CISA Warns of Active Attacks on SharePoint Servers, Urges Immediate Patching
Three flaws are being exploited to break into on-premises SharePoint, steal cryptographic keys, and plant malware. Two more just disclosed could be next.

Microsoft ships fixes for 570 flaws in July, including two bugs already used in attacks
The July 2026 Patch Tuesday is the largest on record, driven partly by an AI system Microsoft is using to hunt bugs in Windows.

Helix: the new extortion crew phoning staff to raid SharePoint files
Researchers at ReliaQuest say the group impersonates managers on the phone, tricks staff into a login trap, then hoovers up company documents from Microsoft SharePoint.

The Automation Nobody Reviewed: How AI-Built Workflows Are Quietly Leaking Enterprise Data
A developer asked an AI to speed up a document approval process. It worked perfectly — and exposed sensitive HR files to hundreds of colleagues. This is happening across businesses right now.

CISA Flags SharePoint Deserialization Bug CVE-2026-45659 as Actively Exploited
The RCE flaw joins KEV with a three-week federal patch deadline. Attribution details remain thin.