
What to know about a vulnerability being exploited on Microsoft SharePoint servers
The company issued an alert to customers Saturday saying it was aware of the zero-day exploit being used to conduct attacks and that it was working to patch the issue. Microsoft updated its guidance Sunday with instructions to fix the problem for SharePoint Server 2019 and SharePoint Server Subscription Edition. Engineers were still working on a fix for the older SharePoint Server 2016 software.
What is a zero-day exploit?
A zero-day exploit is a cyberattack that takes advantage of a previously unknown security vulnerability. 'Zero-day' refers to the fact that the security engineers have had zero days to develop a fix for the vulnerability.
According to the U.S. Cybersecurity and Infrastructure Security Agency (CISA), the exploit affecting SharePoint is 'a variant of the existing vulnerability CVE-2025-49706 and poses a risk to organizations with on-premise SharePoint servers.'
Security researchers warn that the exploit, reportedly known as 'ToolShell,' is a serious one and can allow actors to fully access SharePoint file systems, including services connected to SharePoint, such as Teams and OneDrive.
Google's Threat Intelligence Group warned that the vulnerability may allow bad actors to 'bypass future patching.'
How widespread is the impact?
Eye Security said in its blog post that it scanned over 8,000 SharePoint servers worldwide and discovered that at least dozens of systems were compromised. The cybersecurity company said the attacks likely began on July 18.
Although the scope of the attack is still being assessed, CISA warned that the impact could be widespread and recommended that any servers impacted by the exploit should be disconnected from the internet until they are patched.
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
an hour ago
- Yahoo
Arista Networks (ANET) Soars 17% on Impressive Income, Bullish Ratings
We recently published . Arista Networks Inc (NYSE:ANET) is one of the best-performing stocks on Wednesday. Arista Networks soared by 17.49 percent on Wednesday to close at $138.78 apiece on the back of a flurry of catalysts, including a strong earnings performance and bullish ratings from analysts. In a market note, KeyBanc raised its price target for Arista Networks Inc (NYSE:ANET) to $145 from $115 previously while maintaining an 'overweight' rating, primarily due to bullish outlooks and expectations that two of its clients, Meta and Microsoft, will continue ramping up capital expenditures. Additionally, hyperscale cloud capital expenditures were expected to jump by more than 50 percent this year and by 20 percent in 2026. For its part, Piper Sandler raised its price target for Arista Networks Inc (NYSE:ANET) to $143 from $89 previously, but remained 'neutral' for the company. Piper Sandler said that while it believes in the full potential of Arista Networks Inc (NYSE:ANET), it remains cautious about new investments at current valuation levels. In the second quarter of the year, net income jumped by 33.6 percent to $888.8 million from $665.4 million in the same period last year. Revenues jumped by 30 percent to $2.2 billion from $1.69 billion year-on-year. While we acknowledge the potential of ANET as an investment, our conviction lies in the belief that some AI stocks hold greater promise for delivering higher returns and have limited downside risk. If you are looking for an extremely cheap AI stock that is also a major beneficiary of Trump tariffs and onshoring, see our free report on the .


Business Insider
an hour ago
- Business Insider
Coral Protocol Outperforms Microsoft by 34% With Top GAIA Benchmark for AI Mini-Model
Coral Protocol's multi-agent system has outperformed the Microsoft-backed Magnetic-UI by an unprecedented 34% on the GAIA Benchmark, demonstrating a productive alternative to vertical scaling in AI. The protocol has vowed to surpass modern AI performance limits by scaling systems horizontally, favoring intelligent orchestration over constant parameter extension. Coral achieved the highest score on the GAIA Benchmark for verified systems using mini agents, validating NVIDIA's thesis that smaller models – when orchestrated intelligently – represent the industry's future. However, the team say the result had less to do with building a powerful system than altering the way we think about scaling AI systems themselves. An open protocol, Coral is designed to push AI beyond its typical capacity. Rather than scaling up general models, it facilitates the scaling of intelligence by layering in focused, specialized agents from around the world. Through secure, parallel, multi-agent coordination, Coral enables any language model – large or small – to operate more effectively, delivering superior reasoning, planning, and problem-solving. 'This breakthrough marks a turning point in AI infrastructure,' says Coral CTO Caelum Forder. 'It's proof that horizontal scaling isn't just possible – it's practical, and Coral is the most effective way to do it. The Internet of Agents is now a working reality. If you are an agent developer, just Coralise it. If you are an application developer, build it better for less using our infrastructure.' Competition between entities looking to create the most advanced agentic system has intensified, with the trend towards building larger models to handle ever more complex tasks. Coral's results, however, fly in the face of convention and bear out the findings of a recent NVIDIA paper showing that smaller systems are sufficiently powerful – and do not sacrifice on speed, security, and cost. A multi-layered evaluation suite for advanced AI capabilities, the GAIA Benchmark is used to determine the ability of AI systems to solve real-world tasks requiring significant time and effort for skilled humans. It takes the form of 450 non-trivial questions demanding intensive research, data analysis, and reasoning. Developed to evaluate LLM agents on their ability to act as general-purpose AI assistants, GAIA is the industry standard for measuring model performance. Coral's GAIA Agent System used in the test is an application built on the eponymous protocol and heavily inspired by CAMEL's OWL. It deploys specialized agents for a multitude of tasks such as answer finding, assistance, critique, image analysis, planning, problem solving, search, video processing, and web browsing. Agents interface with one another using the Coral server's MCP communication tools. Topping the GAIA Benchmark leaderboard for small models illustrates Coral's ability to improve the capabilities of all AI systems through graph-based architecture. In the process, it gives developers confidence they can create powerful yet lightweight agents supported by small models. Such systems are capable of working with more information, are more easily integrated into other ecosystems, and benefit from better interconnectivity. 'The role of small models in agentic systems has been undersold to date, but the tides are starting to turn,' says Caelum Forder. 'We have proven that such models can scale beyond their previously known limits and outcompete the incumbents. I'm confident they have a central role to play in the future of agentic AI.' About Coral Protocol Coral Protocol is an open and decentralized collaboration infrastructure that enables communication, coordination, trust and payments for The Internet of Agents: laying the foundation for safe AGI. Coral is the decentralized protocol powering AI agent collaboration, trust, and payments; laying the foundation for safe AGI. Contact


The Verge
an hour ago
- The Verge
GitHub CEO Thomas Dohmke on Copilot, vibe coding, and AI's next chapter
Welcome to Decoder! This is Alex Heath, your Thursday episode guest host and deputy editor at The Verge. It's AI coding week at Decoder. You just heard Casey Newton's interview with the CEO behind Cursor, Michael Truell. Now, I have a conversation with GitHub CEO Thomas Dohmke. In many ways, GitHub Copilot set off the current AI coding boom. But since Thomas was last on Decoder a year ago, the rise of vibe coding has shifted the buzz to newer platforms like Cursor and Windsurf. As you'll hear in our conversation, Thomas is thinking a lot about the competition, as well as GitHub's role in the future of software development. It's a good time to be having this conversation. Thomas has a bird's-eye view of where the industry is headed, and I wanted to know how he thinks the role of a software engineer will keep changing with AI and when I'll feel comfortable vibe coding myself. This is Decoder after all, so I couldn't have him on the show without also asking what life is like these days running GitHub as its own company within Microsoft. If you'd like to read more on what we talked about in this episode, check out the links below: Questions or comments about this episode? Hit us up at [email protected]. We really do read every email! A podcast from The Verge about big ideas and other problems. Posts from this author will be added to your daily email digest and your homepage feed. See All by Alex Heath Posts from this topic will be added to your daily email digest and your homepage feed. See All AI Posts from this topic will be added to your daily email digest and your homepage feed. See All Business Posts from this topic will be added to your daily email digest and your homepage feed. See All Decoder Posts from this topic will be added to your daily email digest and your homepage feed. See All Microsoft Posts from this topic will be added to your daily email digest and your homepage feed. See All OpenAI Posts from this topic will be added to your daily email digest and your homepage feed. See All Podcasts Posts from this topic will be added to your daily email digest and your homepage feed. See All Tech