SharePoint Zero-Day Prompts Global Emergency Patching
SharePoint Zero-Day Prompts Global Emergency Patching

SharePoint Zero-Day Prompts Global Emergency Patching

News summary

A critical zero-day vulnerability (CVE-2025-53770, also known as 'ToolShell') in Microsoft’s on-premises SharePoint servers has triggered active cyberattacks against tens of thousands of organizations globally, including US federal and state agencies, universities, and businesses. The flaw enables unauthenticated attackers to access SharePoint content, steal cryptographic keys, and move laterally within networks, with risk remaining even after initial patching. SharePoint Online is not affected, while Microsoft has released urgent patches for Subscription Edition and 2019, with a fix for 2016 pending. The US Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to implement fixes by July 21, and the FBI is working with partners to mitigate the threat. Security experts warn the vulnerability is highly attractive to ransomware groups, and organizations unable to patch immediately are advised to disconnect vulnerable servers from the internet. The attack has heightened scrutiny of Microsoft’s security culture following prior high-profile breaches.

Story Coverage
Bias Distribution
50% Center
Information Sources
daae85f0-2883-42fc-b085-888140adf30d71639883-fbbd-48af-8cc3-393f63e7b2ef27aa3b97-dde4-4264-bee6-0c66d3641e7468e7fc5e-537b-4887-b796-fbd29c315618
Left 50%
Center 50%
Coverage Details
Total News Sources
5
Left
2
Center
2
Right
0
Unrated
1
Last Updated
16 min ago
Bias Distribution
50% Center
Related News
Daily Index

Negative

22Serious

Neutral

Optimistic

Positive

Ask VT AI
Story Coverage
Subscribe

Stay in the know

Get the latest news, exclusive insights, and curated content delivered straight to your inbox.

Present

Gift Subscriptions

The perfect gift for understanding
news from all angles.

Related News
Recommended News