{"id":5176,"date":"2025-07-24T07:21:59","date_gmt":"2025-07-24T07:21:59","guid":{"rendered":"https:\/\/prepsaret.com\/news\/?p=5176"},"modified":"2025-07-24T07:21:59","modified_gmt":"2025-07-24T07:21:59","slug":"microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals","status":"publish","type":"post","link":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/","title":{"rendered":"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">A recent cybersecurity incident has revealed that a fix released by Microsoft earlier this month failed to effectively address a serious security flaw in its widely used SharePoint server software.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">This shortcoming has reportedly led to a wave of cyber espionage attacks worldwide, according to a timeline reviewed by <\/span><i><span style=\"font-weight: 400;\">Reuters<\/span><\/i><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft acknowledged on Tuesday that its initial update, meant to correct a vulnerability exposed during a May hacker competition, was unsuccessful. A spokesperson confirmed that the issue has now been resolved with additional patches.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Despite this, the identity of the perpetrators behind the sweeping attacks, which have already affected around 100 organizations, remains unknown. Experts warn that the campaign may widen as more hackers exploit the opening.<\/span><\/p>\n<p><b>Related story:<\/b><a href=\"https:\/\/prepsaret.com\/news\/microsoft-warns-of-active-cyberattacks-on-sharepoint-servers-urges-immediate-security-updates\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400;\"> Microsoft Warns of Active Cyberattacks on SharePoint Servers, Urges Immediate Security Updates<\/span><\/a><\/p>\n<h2 style=\"text-align: center;\"><b>Suspected State-Linked Groups Exploit the Gap<\/b><\/h2>\n<p><span style=\"font-weight: 400;\">In a blog post, Microsoft attributed the exploitation to three groups, including &#8220;Linen Typhoon&#8221; and &#8220;Violet Typhoon&#8221;\u2014both believed to have ties to China. Google, alongside <\/span><a href=\"https:\/\/www.microsoft.com\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400;\">Microsoft<\/span><\/a><span style=\"font-weight: 400;\">, also pointed to China-linked hackers as likely initiators of the attack wave.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Chinese government-affiliated entities are frequently linked to <\/span><a href=\"https:\/\/prepsaret.com\/comptia\/what-is-cybersecurity\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400;\">cyber intrusions<\/span><\/a><span style=\"font-weight: 400;\">. However, Beijing consistently denies these allegations.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The Chinese Embassy in Washington responded via email, stating that China &#8220;opposed all forms of cyberattacks&#8221; and criticized what it called &#8220;smearing others without solid evidence.&#8221;<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The flaw was first uncovered in May during a competition in Berlin hosted by cybersecurity firm Trend Micro.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The event rewarded participants who discovered unreported vulnerabilities, with a $100,000 prize for identifying issues in Microsoft SharePoint.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">One researcher from Viettel, a Vietnamese military-run telecom, presented a successful exploit dubbed &#8220;ToolShell&#8221; and received the award, according to Trend Micro\u2019s Zero Day Initiative.<\/span><\/p>\n<h2 style=\"text-align: center;\"><b>National Security Implications and Rising Concerns<\/b><\/h2>\n<p><span style=\"font-weight: 400;\">Bloomberg News reported that the <\/span><a href=\"https:\/\/www.energy.gov\/nnsa\/national-nuclear-security-administration\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400;\">U.S. National Nuclear Security Administration<\/span><\/a><span style=\"font-weight: 400;\">, responsible for safeguarding the country\u2019s nuclear arsenal, was among the targets. However, no classified data was believed to be compromised.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Following the identification of the flaw, Microsoft listed it as critical in a July 8 update. But within days, cybersecurity firms began to see malicious activity directed at SharePoint servers. Sophos noted that hackers had developed methods to circumvent Microsoft\u2019s patch.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Data from the internet-scanning tool Shodan indicated that more than 8,000 servers could be exposed, with systems linked to banks, health providers, industrial firms, and government agencies potentially at risk.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The Shadowserver Foundation, which monitors online threats, estimated the number of vulnerable servers at over 9,000, mostly located in the U.S. and Germany.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Germany\u2019s federal cybersecurity office, BSI, said it had found no evidence of compromised government systems, although several were susceptible to the ToolShell vulnerability.<\/span><\/p>\n<p><b>Read next:<\/b> <a href=\"https:\/\/prepsaret.com\/news\/amazons-aws-cuts-hundreds-of-jobs-amid-ai-restructuring-push\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400;\">Amazon\u2019s AWS Cuts Hundreds of Jobs Amid AI Restructuring Push<\/span><\/a><\/p>\n<p><b>Looking to take your career to the next level?<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Explore our range of certification prep tools designed to enhance your skills, strengthen your resource management know-how, and keep you competitive in your profession:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"https:\/\/prepsaret.com\/comptia-practice-exam\" target=\"_blank\" rel=\"noopener\"><b>CompTIA Exam Prep<\/b> <\/a><span style=\"font-weight: 400;\">\u2013 Build a stronger foundation in IT support, networking, and cybersecurity.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"https:\/\/prepsaret.com\/shrm-cp-and-shrm-scp\" target=\"_blank\" rel=\"noopener\"><b>HR Certification Study Materials<\/b><\/a><span style=\"font-weight: 400;\"> \u2013 Master key HR areas like compliance, talent management, and workforce planning.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"https:\/\/prepsaret.com\/courses\/pmp-test-prep\" target=\"_blank\" rel=\"noopener\"><b>PMP Study Resources<\/b> <\/a><span style=\"font-weight: 400;\">\u2013 Sharpen your project management skills, from budgeting to effective team coordination.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"https:\/\/prepsaret.com\/praxis-prep\" target=\"_blank\" rel=\"noopener\"><b>Praxis Exam Prep<\/b> <\/a><span style=\"font-weight: 400;\">\u2013 Prepare for your teaching certification with detailed study materials, realistic practice tests, and resources tailored to your state\u2019s requirements.<\/span>&nbsp;<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>A recent cybersecurity incident has revealed that a fix released by Microsoft earlier this month failed to effectively address a serious security flaw in its widely used SharePoint server software.\u00a0 This shortcoming has reportedly led to a wave of cyber espionage attacks worldwide, according to a timeline reviewed by Reuters. Microsoft acknowledged on Tuesday that [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":5178,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[330],"tags":[],"class_list":["post-5176","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v22.4 (Yoast SEO v25.3) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals<\/title>\n<meta name=\"description\" content=\"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals\" \/>\n<meta property=\"og:description\" content=\"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/\" \/>\n<meta property=\"og:site_name\" content=\"prepsaret.com\" \/>\n<meta property=\"article:published_time\" content=\"2025-07-24T07:21:59+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png\" \/>\n\t<meta property=\"og:image:width\" content=\"900\" \/>\n\t<meta property=\"og:image:height\" content=\"500\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Philip Omollo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Philip Omollo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/\",\"url\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/\",\"name\":\"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals\",\"isPartOf\":{\"@id\":\"https:\/\/prepsaret.com\/news\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png\",\"datePublished\":\"2025-07-24T07:21:59+00:00\",\"author\":{\"@id\":\"https:\/\/prepsaret.com\/news\/#\/schema\/person\/6b2e8e9d49ea73f227dd1ee9a9860a08\"},\"description\":\"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.\",\"breadcrumb\":{\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage\",\"url\":\"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png\",\"contentUrl\":\"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png\",\"width\":900,\"height\":500,\"caption\":\"The Microsoft logo\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/prepsaret.com\/news\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/prepsaret.com\/news\/#website\",\"url\":\"https:\/\/prepsaret.com\/news\/\",\"name\":\"prepsaret.com\",\"description\":\"One Time Pass Guaranteed on your news Test\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/prepsaret.com\/news\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/prepsaret.com\/news\/#\/schema\/person\/6b2e8e9d49ea73f227dd1ee9a9860a08\",\"name\":\"Philip Omollo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/prepsaret.com\/news\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/dbd8e471884b5a5bec4060995a13517ea2937e29b6f4e3be66515fffcf727095?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/dbd8e471884b5a5bec4060995a13517ea2937e29b6f4e3be66515fffcf727095?s=96&d=mm&r=g\",\"caption\":\"Philip Omollo\"}}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals","description":"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/","og_locale":"en_US","og_type":"article","og_title":"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals","og_description":"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.","og_url":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/","og_site_name":"prepsaret.com","article_published_time":"2025-07-24T07:21:59+00:00","og_image":[{"width":900,"height":500,"url":"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png","type":"image\/png"}],"author":"Philip Omollo","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Philip Omollo","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/","url":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/","name":"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals","isPartOf":{"@id":"https:\/\/prepsaret.com\/news\/#website"},"primaryImageOfPage":{"@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage"},"image":{"@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage"},"thumbnailUrl":"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png","datePublished":"2025-07-24T07:21:59+00:00","author":{"@id":"https:\/\/prepsaret.com\/news\/#\/schema\/person\/6b2e8e9d49ea73f227dd1ee9a9860a08"},"description":"Microsoft knew about a critical SharePoint flaw, but a flawed initial fix left systems exposed, a newly revealed timeline shows.","breadcrumb":{"@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#primaryimage","url":"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png","contentUrl":"https:\/\/prepsaret.com\/news\/wp-content\/uploads\/2025\/07\/Microsoft-Aware-of-SharePoint-Vulnerability-but-Initial-Fix-Proved-Ineffective.png","width":900,"height":500,"caption":"The Microsoft logo"},{"@type":"BreadcrumbList","@id":"https:\/\/prepsaret.com\/news\/microsoft-aware-of-sharepoint-vulnerability-but-initial-fix-proved-ineffective-timeline-reveals\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/prepsaret.com\/news\/"},{"@type":"ListItem","position":2,"name":"Microsoft Aware of SharePoint Vulnerability but Initial Fix Proved Ineffective, Timeline Reveals"}]},{"@type":"WebSite","@id":"https:\/\/prepsaret.com\/news\/#website","url":"https:\/\/prepsaret.com\/news\/","name":"prepsaret.com","description":"One Time Pass Guaranteed on your news Test","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/prepsaret.com\/news\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/prepsaret.com\/news\/#\/schema\/person\/6b2e8e9d49ea73f227dd1ee9a9860a08","name":"Philip Omollo","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/prepsaret.com\/news\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/dbd8e471884b5a5bec4060995a13517ea2937e29b6f4e3be66515fffcf727095?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/dbd8e471884b5a5bec4060995a13517ea2937e29b6f4e3be66515fffcf727095?s=96&d=mm&r=g","caption":"Philip Omollo"}}]}},"_links":{"self":[{"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/posts\/5176","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/comments?post=5176"}],"version-history":[{"count":2,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/posts\/5176\/revisions"}],"predecessor-version":[{"id":5180,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/posts\/5176\/revisions\/5180"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/media\/5178"}],"wp:attachment":[{"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/media?parent=5176"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/categories?post=5176"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prepsaret.com\/news\/wp-json\/wp\/v2\/tags?post=5176"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}