The Register Home Page

back to article Microsoft: SharePoint attacks now officially include ransomware infections

Ransomware has officially entered the Microsoft SharePoint exploitation ring. Late Wednesday, in an update to its earlier warning, Redmond confirmed that a threat group it tracks as Storm-2603 is abusing vulnerable on-premises SharePoint servers to deploy ransomware. The software giant had already pinned blame on three crews …

  1. Eye Know

    Phew it's on-prem

    Luckily on-prem SharePoint is a hellish nightmare, so was mostly avoided by my clients and ditched by the few when they got 365.

    1. sedregj
      Childcatcher

      Re: Phew it's on-prem

      "so was mostly avoided by my clients"

      Somewhat smug and very stupid.

  2. Grunchy Silver badge

    No loss

    My working theory is that you could delete every sharepoint site on earth and probably nobody would care (not only that: nobody would even notice).

    It’s like how hackers were attacking FBI website, etc. Honestly, if nobody ever mentioned it, how would you know?

    You would probably not notice it for the rest of your life, is what the truth is.

    1. Gene Cash Silver badge

      Re: No loss

      It wouldn't make sharepoint search any less functional...

  3. VoiceOfTruth Silver badge

    According to whom?

    >> Two of the crews are Chinese government-backed

    Prove it. Meanwhile MS scrapes data for the NSA. So MS is a nation state backed info stealer.

  4. IGotOut Silver badge

    Really?

    "The software giant had already pinned blame on three crews for the ..."

    I pin it on a single company, more concerned with line going up, rather than, ooo I don't know, spending time on money on security and quality products.

  5. Anonymous Coward
    Anonymous Coward

    considered harmful

    Which has caused more damage, from security problems or otherwise: Sharepoint, or Teams

    Sharepoint has probably used (wasted) more resources, but Teams inevitably wastes more time. Too close to call.

    1. Esso

      Re: considered harmful

      Managing security and access at the SharePoint is like trying to waterproof a biscuit.

      Whereas it is (theoretically) possible to have Security and SharePoint, it certainly would make the experience so undesirable that it would see even less usage.

      On a related topic, was there ever a company in existence whose SharePoint administration didn't go bald after three years? And stopped being useful/updated after four years?

  6. MachDiamond Silver badge

    Don't tell me

    Wait, some M$ software has been exploited? O..... M..... G. Who would have seen that coming?

    /s

  7. Esso
    Trollface

    Unfortunately, they are no Robin Hood type APTs that will simply erase your SharePoint and call it a good deed.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like