
Microsoft server hack hit about 100 victims, researchers say
Microsoft on Saturday issued an alert about "active attacks" on self-managed SharePoint servers, which are widely used by government agencies and businesses to share documents within organisations.
Dubbed a "zero-day" because it leverages a previously undisclosed digital weakness, the hacks allow spies to penetrate vulnerable servers and potentially drop a backdoor to secure continuous access to victim organizations.
Vaisha Bernard, the chief hacker at Eye Security, a Netherlands-based cybersecurity firm, which discovered the hacking campaign, opens new tab targeting one of its clients on Friday, said that an internet scan carried out with the Shadowserver Foundation had uncovered nearly 100 victims altogether - and that was before the technique behind the hack was widely known.
"It's unambiguous," Bernard said. "Who knows what other adversaries have done since to place other backdoors."
He declined to identify the affected organizations, saying that the relevant national authorities had been notified.
The Shadowserver Foundation confirmed the 100 figure and said that most of those affected were in the United States and Germany and that the victims included government organizations.
Another researcher said that, so far, the spying appeared to be the work of a single hacker or set of hackers.
"It's possible that this will quickly change," said Rafe Pilling, director of Threat Intelligence at Sophos, a British cybersecurity firm.
Microsoft said it had "provided security updates and encourages customers to install them," a company spokesperson said in an emailed statement.
It was not clear who was behind the ongoing hack. The FBI said on Sunday it was aware of the attacks and was working closely with its federal and private-sector partners, but offered no other details. Britain's National Cyber Security Center said in a statement, opens new tab that it was aware of "a limited number" of targets in the United Kingdom.
According to data from Shodan, a search engine that helps to identify internet-linked equipment, over 8,000 servers online could theoretically have already been compromised by hackers.
Those servers include major industrial firms, banks, auditors, healthcare companies, and several U.S. state-level and international government entities.
"The SharePoint incident appears to have created a broad level of compromise across a range of servers globally," said Daniel Card of British cybersecurity consultancy, PwnDefend.
"Taking an assumed breach approach is wise, and it's also important to understand that just applying the patch isn't all that is required here."
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


BBC News
20 minutes ago
- BBC News
Riders cycle from Yorkshire to London for The Jo Cox Way
More than 100 people have cycled from Yorkshire to London in memory of Jo Cox, the MP who was murdered in June were welcomed in the capital by Mrs Cox's parents alongside her sister Kim Leadbeater, the MP for Spen Cox, who was MP for the constituency under its former guise of Batley & Spen, was shot and stabbed multiple times in Birstall, West Yorkshire, by white supremacist Thomas 290-mile ride – The Jo Cox Way – has been taking place for a decade, and it raises money for The Jo Cox Foundation. Ms Leadbeater said: "We've had more cyclists than ever... I think it's fair to say the 10th Jo Cox Way has been a huge success."These riders are just amazing. It just shows the best of people."It's a huge physical and mental challenge and every single one of these cyclists has earnt the respect of everyone they know."Jo was a passionate campaigner for gender equality so it's wonderful to see nearly 60 women riding this year and showing that cycling really is for everyone." The youngest of the 103 participants in this year's ride – which involves 13,000ft of climbing – was 21 while the oldest was 80-year-old Kath Lyons from Skipton, who completed the route for the fourth time."I've been doing The Jo Cox Way again to remind myself what Jo stood for," Mrs Lyons said. "We all have more in common than we think."There are always times on the ride when you think 'What the hell am I doing this for?' but we just encourage each other to get to the top of the next hill." Ken Avery, 76, from Liversedge, West Yorkshire, has terminal cancer. His daughter rode alongside him for the first few miles of the journey, and his son crossed the finish line with him in London."I think they're both proud of me because I'm doing something that I enjoy and it's keeping me fit and healthy," he Avery was told he could expect to live for another 10 years – but that was 15 years ago. He said: "I believe it's down to cycling and keeping fit." Saeed Umar, 50, from Blackburn, was taking part for the first time."It's a great event, bringing together people of different abilities from across the country to help each other through this epic ride - working together, working through challenges," he said."Cycling and charity has brought us together." Listen to highlights from West Yorkshire on BBC Sounds, catch up with the latest episode of Look North.


Reuters
20 minutes ago
- Reuters
Several killed in train crash in Germany, media say
July 27 (Reuters) - Several people were killed when a passenger train derailed in southwestern Germany on Sunday, German media reported, citing security sources. A police spokesperson in the city of Stuttgart could only confirm that there were several injured among the 100 or so people on board and that at least two carriages had left the tracks near the town of Riedlingen. The train was on a 90 km (55 mile) route between Sigmaringen and Ulm. A picture by German news agency DPA showed carriages largely intact but jackknifed into each other and rolled onto their sides.


Sky News
22 minutes ago
- Sky News
At least three killed after train derailed in Germany, police say
At least three people have died after a train derailed in southern Germany, police have said. A spokesperson for the Federal Police Inspectorate in Stuttgart told Sky News earlier on Sunday that the incident took place near the town of Riedlingen. Two train carriages came off the rails at around 6.10pm local time, with around 100 people aboard. The passengers have now been evacuated from the train. Reuters news agency reported that the train was on a 55 mile route between Sigmaringen and Ulm in the state of Baden-Wurttemberg. Please refresh the page for the latest version.