Switzerland’s federal IT office says attackers breached its Microsoft SharePoint servers and compromised approximately 200 user accounts. The Federal Office for Information Technology and Telecommunication, known as BIT, detected unusual activity on its SharePoint environment on July 28. After confirming the incident, the agency cut off external internet access, patched suspected vulnerabilities and reset passwords…
Attackers are actively exploiting a critical SharePoint RCE flaw to steal machine keys from vulnerable on-premise servers. The issue, tracked as CVE-2026-50522, can give criminals a lasting route back into compromised environments. Microsoft fixed the vulnerability in its July security updates. However, security researchers now report exploitation attempts against unpatched SharePoint deployments. The attacks can…
SharePoint ransomware attacks have revealed a new challenge for incident responders after Microsoft uncovered two unrelated threat groups operating inside the same compromised environment at the same time. The investigation shows that modern cyberattacks can overlap rather than occur as isolated incidents, making detection and containment far more difficult. Microsoft is urging organizations to strengthen…