Microsoft SharePoint Exploits Pose Risk of Document Theft

Cybersecurity researchers have discovered two new techniques that could enable hackers to steal data from Microsoft SharePoint. Microsoft SharePoint is a web-based platform used for collaboration, content management, and business process automation within organizations. It integrates with other Microsoft products like Office 365. According to a report from Varonis Threat Labs, these methods cybercriminals could…

The post Microsoft SharePoint Exploits Pose Risk of Document Theft appeared first on Petri IT Knowledgebase.

Continue reading Microsoft SharePoint Exploits Pose Risk of Document Theft

New covert SharePoint data exfiltration techniques revealed

Varonis Threat Labs researchers have uncovered two techniques attackers can use can use for covert data and file exfiltration from companies’ SharePoint server. “These techniques can bypass the detection and enforcement policies of traditio… Continue reading New covert SharePoint data exfiltration techniques revealed

CISA: Second SharePoint Flaw Disclosed at Pwn2Own Exploited in Attacks

CISA says a second SharePoint vulnerability demonstrated last year at Pwn2Own, CVE-2023-24955, has been exploited in the wild.
The post CISA: Second SharePoint Flaw Disclosed at Pwn2Own Exploited in Attacks appeared first on SecurityWeek.
Continue reading CISA: Second SharePoint Flaw Disclosed at Pwn2Own Exploited in Attacks

Critical Microsoft SharePoint Flaw Exploited: CISA Issues Warning for Organizations to Act Swiftly

The Cybersecurity and Infrastructure Security Agency (CISA) has raised concerns about the active exploitation of a critical vulnerability in Microsoft SharePoint. The security flaw (tracked as CVE-2023-29357) allows unauthenticated attackers to gain administrative privileges on unpatched servers. The Microsoft SharePoint vulnerability was first discovered by STAR Labs researcher Nguyễn Tiến Giang (Jang) during Vancouver’s Pwn2Own…

The post Critical Microsoft SharePoint Flaw Exploited: CISA Issues Warning for Organizations to Act Swiftly appeared first on Petri IT Knowledgebase.

Continue reading Critical Microsoft SharePoint Flaw Exploited: CISA Issues Warning for Organizations to Act Swiftly

Microsoft fixes critical flaws in Windows Kerberos, Hyper-V (CVE-2024-20674, CVE-2024-20700)

For January 2024 Patch Tuesday, Microsoft has released fixes for 49 CVE-numbered vulnerabilities, two of which are critical: CVE-2024-20674 and CVE-2024-20700. None of the vulnerabilities fixed this time aroundare under active exploitation or have been… Continue reading Microsoft fixes critical flaws in Windows Kerberos, Hyper-V (CVE-2024-20674, CVE-2024-20700)

Subscribe to ‘This Week in IT’ on YouTube

This Week in IT now has its own YouTube Channel! If you have been watching This Week in IT since it started more than a year ago, you will probably realize that home was the Petri IT Knowledgebase YouTube channel. We recently decided that it would be nice to give the show its own identity…

The post Subscribe to ‘This Week in IT’ on YouTube appeared first on Petri IT Knowledgebase.

Continue reading Subscribe to ‘This Week in IT’ on YouTube

Mastering Microsoft 365 Administration: A Guide to Microsoft’s Various Admin Centers

Microsoft provides a comprehensive suite of tools for effectively administrating and managing various aspects of the Microsoft 365 platform. There’s not just one Office 365 portal, IT pros actually have access to various admin centers, each tailored to manage specific aspects of the platform. In this article, we will explore the key admin centers available…

The post Mastering Microsoft 365 Administration: A Guide to Microsoft’s Various Admin Centers appeared first on Petri IT Knowledgebase.

Continue reading Mastering Microsoft 365 Administration: A Guide to Microsoft’s Various Admin Centers