SharePoint Mayhem: Zero-Day Vulnerability Sparks Global Cyber Chaos

The SharePoint zero-day ToolShell vulnerability (CVE-2025-53770/53771) has compromised 396 systems across 41 countries. The US leads with 31% of attacks, and Mauritius ranks surprisingly high due to US government presence. While the vulnerability spread like gossip at a family reunion, experts foresee more organizations joining the “I Was Hacked” club.

Pro Dashboard

Hot Take:

Looks like Microsoft SharePoint decided to throw a global house party and forgot to lock the doors. With 396 systems compromised and counting, it’s safe to say the guest list has gotten way out of hand. The cybercriminals are doing the cha-cha in the U.S., while Mauritius is surprisingly leading the conga line. Who knew SharePoint could be the life of the party? Time for some serious bouncer action—or at least a password change!

Key Points:

  • 396 systems compromised due to Microsoft SharePoint’s zero-day vulnerability ToolShell.
  • Compromise affected at least 145 organizations in 41 countries, with the U.S. taking the top spot.
  • Government sector hit hardest, accounting for 30% of infections.
  • China-linked actors initially blamed, but the exploit is now public and widely used.
  • Eye Security advises immediate patching and threat hunting for on-premises SharePoint users.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?