Close Menu

    Subscribe to our newsletter

    Get the latest Geekhub updates.

    Friday, April 17
    Geekhub
    Facebook X (Twitter) Instagram
    • Home
    • About us
    • News
    • Technology

      This New AI Tutor in South Africa Is Teaching Students How to Think, Not Cheat

      RAZOR13 April 2026

      US Officials Quietly Warn Banks: The Next Big Cyber Risk Might Be AI Itself

      13 April 2026

      Standard Bank Data Breach Triggers Regulator Probe — Here’s What You Need to Know

      13 April 2026

      Apple’s Foldable iPhone Faces Engineering Delays Ahead of Expected 2026 Launch

      7 April 2026

      MTN Launches New Month-to-Month Packages with 20GB for R1 Promo

      31 March 2026
    • Opinion

      The Best Marketing Sometimes Starts With a Dead End

      26 March 2026

      Nostalgia Isn’t a Business Plan: The Truth About 90s Reboots

      11 February 2026

      Convenience vs connection: The Problem With “Smart” Technology

      11 February 2026

      The Uncomfortable Truth Told By Movie Villains

      10 February 2026

      Valentine’s Day: Commercial Fluff Without The Love

      4 February 2026
    • Movies & TV

      The Thomas Crown Affair: It’s Not Just A Heist

      16 April 2026

      Disclosure Day: Spielberg Asks What If Aliens Were Already Here?

      16 April 2026

       Dune: Part Three Isn’t About Destiny Anymore… It’s About Consequences

      15 April 2026

      Oh Peanuts… Snoopy Unleashed First Look Teases a Big City Adventure

      15 April 2026

      Jumanji: Open World Is Flipping the Game Into Reality

      14 April 2026
    • Hardware

      Apple’s Foldable iPhone Faces Engineering Delays Ahead of Expected 2026 Launch

      7 April 2026

      Samsung Might’ve Just Broken Apple’s Sneakiest Lock-In Trick

      30 March 2026

      The smartphone wars in South Africa aren’t really about phones anymore

      17 March 2026

      Apple MacBook Neo: You Can Now Buy a New MacBook for R12,000… But Is It Worth It?

      11 March 2026

      Samsung Galaxy S26 series lands in South Africa and its all very familiar

      25 February 2026
    • Get In Touch
    Geekhub
    Home » Global SharePoint Zero-Day Breach Hits Over 100 Organizations
    News

    Global SharePoint Zero-Day Breach Hits Over 100 Organizations

    Staff WriterBy Staff Writer22 July 2025No Comments3 Mins Read
    Facebook Twitter LinkedIn Email WhatsApp Copy Link

    A newly discovered zero-day vulnerability in Microsoft SharePoint has triggered a global cybersecurity incident, with at least 100 organizations confirmed breached and thousands more potentially exposed.

    The exploit, dubbed “ToolShell” by researchers, gives attackers full access to SharePoint servers. It lets them run commands, move laterally across networks, and drop persistent backdoors that can remain even after patching. In other words, this isn’t just a breach. It’s a digital skeleton key.

    The campaign was first spotted by Dutch cybersecurity firm Eye Security on July 18. Since then, threat intel group Shadowserver has confirmed dozens of successful intrusions, many targeting sensitive infrastructure in the US and Germany. Microsoft issued emergency patches on July 20 for SharePoint Server 2019 and the Subscription Edition, but a fix for SharePoint 2016 is still in the works. That’s a problem, because many public and private institutions are still running the older version and may not even know they’re exposed.

    Google’s Mandiant team has linked the attack to a state-sponsored actor with ties to China, although Microsoft has not officially confirmed who is behind it. What is clear is that the breach is broad, active, and highly sophisticated. According to Shodan data, roughly 8,000 to 9,000 SharePoint servers are internet-facing and are prime targets if they haven’t been patched.

    “This isn’t your usual smash and grab ransomware play,” said one security researcher familiar with the case. “This is espionage-level stealth with a focus on persistence. Even if you patch now, if they were in before, they might still be there.”

    The US Cybersecurity and Infrastructure Security Agency (CISA), along with agencies in the UK and Europe, are urging organizations to disconnect vulnerable SharePoint instances from the internet, rotate passwords and cryptographic keys, and conduct full incident response reviews. The fear is that compromised systems may already be leaking sensitive data or providing quiet access to broader networks.

    If there’s one silver lining, it’s that SharePoint Online, Microsoft’s cloud-based platform, is not affected. That has reignited the ongoing debate about the future of on-prem infrastructure. For many IT teams, this is yet another reason to accelerate their shift to the cloud or at least get serious about patch management and vulnerability scanning.

    Microsoft says it’s working on a fix for the 2016 version and is helping affected customers investigate. In the meantime, security professionals are recommending that organizations treat every unpatched SharePoint server as potentially compromised and respond accordingly.

    The fallout from this one is just getting started.

    Story originally reported by Reuters: James Pearson and Raphael Satter, (c) 2025 Reuters

    Microsoft sharepoint zero-day
    Follow For The Latest Updates Follow For The Latest Updates
    Share. Facebook Twitter LinkedIn WhatsApp
    Staff Writer

    Related Posts

    This New AI Tutor in South Africa Is Teaching Students How to Think, Not Cheat

    RAZOR13 April 2026

    Apple’s Foldable iPhone Faces Engineering Delays Ahead of Expected 2026 Launch

    7 April 2026

    The End of Showmax With A Redirection To Something Familiar

    2 April 2026
    Opinion

    The Best Marketing Sometimes Starts With a Dead End

    26 March 2026

    Nostalgia Isn’t a Business Plan: The Truth About 90s Reboots

    11 February 2026

    Convenience vs connection: The Problem With “Smart” Technology

    11 February 2026

    The Uncomfortable Truth Told By Movie Villains

    10 February 2026
    Don't Miss
    Movies & TV

    The Thomas Crown Affair: It’s Not Just A Heist

    Shana Mohamed16 April 2026

    Fresh off his Oscar win, Michael B. Jordan brings a sleek, dangerous edge to The Thomas Crown Affair, revealed in first footage at CinemaCon 2026.

    Disclosure Day: Spielberg Asks What If Aliens Were Already Here?

    16 April 2026

     Dune: Part Three Isn’t About Destiny Anymore… It’s About Consequences

    15 April 2026

    Oh Peanuts… Snoopy Unleashed First Look Teases a Big City Adventure

    15 April 2026
    About Us
    About Us

    Geekhub was not created as a business and we are not journalists, we are just a bunch of geeks that love what we do and we share our collective passion with you, our valued readers.

    Contact: +27 83 346 2178

    Facebook X (Twitter) LinkedIn
    Our Picks

    The Thomas Crown Affair: It’s Not Just A Heist

    16 April 2026

    Disclosure Day: Spielberg Asks What If Aliens Were Already Here?

    16 April 2026

     Dune: Part Three Isn’t About Destiny Anymore… It’s About Consequences

    15 April 2026
    Most Popular

    AI and The Cost Of Convenience: What are we really giving up?

    27 November 2025

    OPPO Reno 12Pro 5G- A beautiful Mid-range Contender

    14 August 2024

    Huawei’s AI Chip Challenge: A David vs. Goliath Showdown?

    15 August 2024
    • Home
    • Terms of Service
    • Geekhub Editorial Policy
    • Privacy Policy
    • Get In Touch
    © 2026 Geekhub.co.za All Rights Reserved!

    Type above and press Enter to search. Press Esc to cancel.