Microsoft SharePoint hack affects global federal agencies

A global breach of Microsoft SharePoint has exposed sensitive data across governments and businesses


Web Desk July 21, 2025 1 min read

A major security breach involving Microsoft’s SharePoint platform has affected government agencies, businesses, and research institutions globally.

Exploiting a “zero-day” vulnerability, the breach impacted US federal and state agencies, universities, and energy companies, with attackers gaining access to sensitive data and systems, as reported by The Washington Post.

The breach involved tampering with automated data systems and extracting passwords and cryptographic keys, allowing continued access even after patches. Microsoft has yet to issue a comprehensive fix, leaving victims struggling to secure their systems.

SharePoint, a crucial tool for collaboration and document management, is widely used across both commercial and government sectors. The breach has raised concerns about data theft and the long-term security of such platforms.

The FBI has confirmed the breach, and investigations are ongoing, with the US government, Canada, and Australia involved, as reported by Reuters.

Experts have warned that the ability of hackers to retain access using cryptographic keys poses an ongoing threat.

This incident is the latest in a series of security lapses for Microsoft, which has faced criticism over previous breaches, including one involving China-backed hackers in 2023.

The breach has spurred a reassessment of the cybersecurity readiness of major tech companies and raised alarms about the protection of critical infrastructure.

As cybersecurity teams work to assess the damage, concerns over the timeliness of response persist, especially after budget cuts to incident response teams.

COMMENTS

Replying to X

Comments are moderated and generally will be posted if they are on-topic and not abusive.

For more information, please see our Comments FAQ