logo
What to know about a vulnerability being exploited on Microsoft SharePoint servers

What to know about a vulnerability being exploited on Microsoft SharePoint servers

Time of India5 days ago
Academy
Empower your mind, elevate your skills
Microsoft has issued an emergency fix to close off a vulnerability in Microsoft's SharePoint software that hackers have exploited to carry out widespread attacks on businesses and at least some federal agencies.The company issued an alert to customers Saturday saying it was aware of the zero-day exploit being used to conduct attacks and that it was working to patch the issue. Microsoft updated its guidance Sunday with instructions to fix the problem for SharePoint Server 2019 and SharePoint Server Subscription Edition. Engineers were still working on a fix for the older SharePoint Server 2016 software.What is a zero-day exploit? A zero-day exploit is a cyberattack that takes advantage of a previously unknown security vulnerability. "Zero-day" refers to the fact that the security engineers have had zero days to develop a fix for the vulnerability.According to the U.S. Cybersecurity and Infrastructure Security Agency (CISA), the exploit affecting SharePoint is "a variant of the existing vulnerability CVE-2025-49706 and poses a risk to organizations with on-premise SharePoint servers."Security researchers warn that the exploit, reportedly known as "ToolShell," is a serious one and can allow actors to fully access SharePoint file systems, including services connected to SharePoint, such as Teams and OneDrive.Google's Threat Intelligence Group warned that the vulnerability may allow bad actors to "bypass future patching."How widespread is the impact? Eye Security said in its blog post that it scanned over 8,000 SharePoint servers worldwide and discovered that at least dozens of systems were compromised. The cybersecurity company said the attacks likely began on July 18.Although the scope of the attack is still being assessed, CISA warned that the impact could be widespread and recommended that any servers impacted by the exploit should be disconnected from the internet until they are patched.
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

Plan to develop Lucknow as India's 1st AI City gets ₹10,732-crore push
Plan to develop Lucknow as India's 1st AI City gets ₹10,732-crore push

Hindustan Times

time2 hours ago

  • Hindustan Times

Plan to develop Lucknow as India's 1st AI City gets ₹10,732-crore push

The state capital has received a corpus of ₹10,732 crore for developing the AI ecosystem under the IndiaAI Mission approved in March 2024. The move comes at a time when plans are afoot to develop Lucknow as the country's first AI City. According to the state government, this investment is 67% higher than any other technology infrastructure in the country. (FOR REPRESENTATION) The initiative is part of a major push to develop Uttar Pradesh as the new IT destination. The proposed investment is meant for 10,000 Graphics Processing Units, multi-modal language models and an AI innovation center. The state government will soon come up with the draft AI policy in line with Vision 2047. According to the state government, this investment is 67% higher than any other technology infrastructure in the country. Apart from this, a high-tech AI-based traffic management system is being proposed for Lucknow. Prime Minister Narendra Modi's constituency, Varanasi, is already in the process of implementing an AI-enabled smart traffic system. Under the state government's flagship initiative, AI Pragya, over 10 lakh youths, teachers, gram pradhans, government employees, and farmers are being trained in AI, machine learning, data analytics and cybersecurity in partnership with tech giants like Microsoft, Intel, Google, and Guvi. The state government aims to train 1.5 lakh people every month, with industry-ready certifications part of the programme. AI-powered systems such as CCTV surveillance, facial recognition, number plate tracking, and SOS alert systems have been implemented in 17 municipal corporations and Gautam Buddh Nagar. These are directly integrated with the 112 helpline and police control rooms. Additionally, the 'Jarvis' AI monitoring system is active in 70 prisons, ensuring 24x7 surveillance of inmates. Under the UP Agris Project, 10 lakh farmers are being connected to AI-based technologies such as smart irrigation, drone mapping, pest detection, and digital market access. The initiative also involves 10,000 women's self-help groups as active partners. In the revenue department, satellite imaging and AI algorithms are being used for land consolidation and record management. This has enabled accurate digital mapping, transparent land distribution, and reduction of disputes. To protect mineral resources, 57 unmanned AI enabled check gates have been set up across 25 districts. Illegal mining is being monitored using RFID tags, geofencing, and AI camera-equipped weighbridges. In the healthcare sector, the country's first AI-based breast cancer screening centre has been established in Fatehpur, according to the state government.

Industrial policy to align with renewable vision: Min
Industrial policy to align with renewable vision: Min

Time of India

time4 hours ago

  • Time of India

Industrial policy to align with renewable vision: Min

Patna: Industries minister Nitish Mishra on Saturday said the forthcoming Bihar Industrial Policy-2025 would be aligned with the state's energy vision to drive sustainable growth. Speaking at the launch of the Bihar Renewable Energy Policy 2025 and Pumped Storage Project Policy 2025, Mishra urged investors to look beyond perceptions. "Do not see Bihar through what you hear. See it with your own eyes," he said. "Bihar is a sunshine state where people worship the Sun god during the pious Chhath festival," he said, adding that both the new energy policies and the upcoming industrial policy would play a pivotal role in building a "Viksit Bihar", contributing to a "Viksit Bharat". Highlighting the state's renewable potential, Mishra said, "We received Rs 90,000 crore worth of investment proposals in the renewable energy sector alone out of a total of Rs 1.81 lakh crore during the Dec 2024 investors' meet." He also cited an integrated manufacturing cluster coming up on 1,700 acres in Gaya to boost both conventional and non-conventional sectors. A short film on the new policies was screened, followed by a presentation by energy secretary Manoj Kumar Singh, who detailed incentives such as exemptions in stamp duty, electricity duty, and land conversion fees, along with open access, energy banking, carbon credit support, and more. Singh said, "As per the Central Electricity Authority's Resource Adequacy Plan, Bihar will require 13GW of renewable energy by 2029-30. There is a huge market here."

No hiring in India: Could Trump's new push disrupt tech jobs?
No hiring in India: Could Trump's new push disrupt tech jobs?

India Today

time5 hours ago

  • India Today

No hiring in India: Could Trump's new push disrupt tech jobs?

Donald Trump has called on Google, Apple, and other US tech giants to stop hiring in India and prioritise Americans instead. The statement, though not yet a policy, has triggered concern across India's white-collar job sector, especially among engineering and management graduates aiming for roles in global tech enforced, the impact could be sharp: from IIT placement trends to mid-level tech hiring, from GCC operations to India's growing dependence on global companies for high-skilled and Wisdom Hatch Founder Akshat Shrivastava said on X that the chances for Indian jobseekers are LET'S UNDERSTAND HOW THE HIRING WORKS American tech companies don't just hire from India. Some also build in India, including the Google, Apple, and Microsoft, all have large operations here, often in the form of Global Capability Centres (GCCs).These giants maintain a presence in India where professionals are at the task of building products, writing code, testing machines, overseeing global employs around 10,000 people in India. Microsoft has over 18,000 employees here. These are for operations across the has around 5,000 direct employees in India, and thousands more in its supplier network and development of these jobs are not for call centres or support. The core development roles, white-collar positions, are in play that attract graduates from IITs, NITs, IIITs, and even Tier-2 colleges.A pronounced number of these roles are built for India but are part of global projects. And yes, some top-tier students are hired directly to go to the US exactly the pipe Trump wants to close."There's no denying that companies like Google and Apple have long symbolised the 'dream job' for many Indian students, and rightfully so. Indian talent has been a major contributor to the global tech revolution, not just as employees but as leaders," says Neelakantha Bhanu, Founder and CEO of Bhanzu, and title holder of 'World's Fastest Human Calculator'."However, if such hiring freezes become a reality, it will be a wake-up call, not in fear, but in perspective," he says."The world is changing, and so are opportunities. India today is not just a source of talent, but a builder of global products," Bhanu adds. WHAT HAPPENS TO IIT AND IIM PLACEMENTS?Every December, the buzz begins: placement season. But behind the success stories, there's a truth not often told -- many students don't land dream IITians, despite the brand tag, end up in jobs that pay Rs 8-10 lakh per annum or less. Not because they aren't brilliant. But because not everyone gets picked by Google, Microsoft, or a US -- based startup with a fancy from IITs from 2023-2024 show that even in top IITs, 20-25% of students were still unplaced at the end of the obtained through RTI requests filed by IIT Kanpur alumnus Dheeraj Singh shows that nearly 8,000 students, around 38% across 23 IITs, remain unplaced in the year IIMs, especially the older ones, place most students in India-based roles, consulting, banking, and management BIG PICTURE: INDIA'S WHITE-COLLAR WALL COULD CRACKTrump's statement comes at a time when India is producing more engineers than it can absorb. Private colleges, deemed universities, and even Tier-1 institutes are churning out thousands of tech graduates each year. But demand has 51.25% of graduates amongst the graduates in India are considered employable, highlighting persistent gaps in vocational training and skill development, as per the Economic Survey turns out nearly 15 lakh engineering graduates each year, yet only 10-15% among them find employment, as noted in a report by has kept things afloat over the past decade is the globalisation of Indian tech talent. US -- Mbased hiring, remote work, global team integration, and GCC expansion have created a top 10% of tech graduates, those who would go abroad or work on US -- facing roles from India, may have to compete in a shrinking domestic market. And this creates a domino effect down the ladder."If US tech companies stop hiring from India, it'll cost them more than us. India has long been their strongest talent pool, from engineers to CEOs. Some students may miss out on overseas roles, but fewer than 2% of IIT graduates go abroad now," says Nishant Chandra, Co-founder, Newton School."Most choose to stay and lead from India. This shift could actually benefit us by putting focus on skills over pedigree," he SMALLER STARTUPS FOLLOW SUIT?Possibly. If the bigger players hit pause, mid-sized companies may rethink their hiring plans too, especially those who build for US clients or rely on US venture capital. And in India's startup ecosystem, perception drives could delay hiring cycles, reduce internship opportunities, and force more candidates to settle for lower Group Founder Ankur Agarwal, a top executive search firm, sums it up: 'These Trump rules, if enforced strictly, will definitely impact placements in IITs as the top US companies recruit quite a bit from these campuses for their US -- based tech development. IIMs are usually used to hire for India roles only, so they will not be impacted.""The real impact will be felt by the GCCs, though, which have become an important recruiter for top quartile tech talent. However, the actual impact will depend on how strictly companies comply with this directive and whether it becomes formal policy, as the US still faces significant tech talent shortages that make complete elimination of overseas hiring challenging," he NEXT?Nobody knows if Trump's statement will become law. But it's already a signal."Our institutions, our ecosystems, and our ambitions are ready. And as someone who chose to stay and build here, I can say that there's never been a more exciting time to be in India. We're not just producing global talent anymore. We're producing global solutions," says time to prepare is now, not just with coding skills, but with adaptability, global exposure, and maybe even a Plan B that doesn't rely on a Silicon Valley zip code.- Ends advertisement

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store