Microsoft

Microsoft Server Software Comes Under Widespread Cyberattack

Breadcrumb Trail Links Home PMN Business Share this Story : Microsoft Rushes to Stop Hackers from Wreaking Global Havoc Copy Link Email X Reddit Pinterest LinkedIn Tumblr Microsoft Rushes to Stop Hackers from Wreaking Global Havoc Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the

Microsoft Rushes to Stop Hackers from Wreaking Global Havoc

Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the globe and steal sensitive information, according to officials and cybersecurity researchers.

Article content

(Bloomberg) — Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the globe and steal sensitive information, according to officials and cybersecurity researchers.

Article content

Microsoft over the weekend released a patch for the vulnerability in servers of the SharePoint document management software. The company said it was still working to roll out other fixes after warnings that hackers were targeting SharePoint clients, using the flaw to enter file systems and execute code.

Article content
Article content

Story continues below

Article content

Multiple different hackers are launching attacks through the Microsoft vulnerability, according to representatives of two cybersecurity firms, CrowdStrike Holdings, Inc. and Google’s Mandiant Consulting.

Article content
Article content

Hackers have already used the flaw to break into the systems of national governments in Europe and the Middle East, according to a person familiar with the matter. In the US, they’ve accessed government systems, including ones belonging to the US Department of Education, Florida’s Department of Revenue and the Rhode Island General Assembly, said the person, who spoke on condition that they not be identified discussing the sensitive information.

Article content

Representatives of the Department of Education and Rhode Island legislature didn’t respond to calls and emails seeking comment Monday. A Florida Department of Revenue spokesperson, Bethany Wester Cutillo, said in an email that the SharePoint vulnerability is being investigated “at multiple levels of government” but that the state agency “does not comment publicly on the software we use for operations.”

Article content

Story continues below

Article content

The hackers also breached the systems of a US-based health-care provider and targeted a public university in Southeast Asia, according to a report from a cybersecurity firm reviewed by Bloomberg News. The report doesn’t identify either entity by name, but says the hackers have attempted to breach SharePoint servers in countries including Brazil, Canada, Indonesia, Spain, South Africa, Switzerland, the UK and the US. The firm asked not to be named because of the sensitivity of the information. 

Article content

In some systems they’ve broken into, the hackers have stolen sign-in credentials, including usernames, passwords, hash codes and tokens, according to a person familiar with the matter, who also spoke on condition that they not be identified discussing the sensitive information.

Article content

“This is a high-severity, high-urgency threat,” said Michael Sikorski, chief technology officer and head of threat intelligence for Unit 42 at Palo Alto Networks Inc. 

Article content

“What makes this especially concerning is SharePoint’s deep integration with Microsoft’s platform, including their services like Office, Teams, OneDrive and Outlook, which has all the information valuable to an attacker,” he said. “A compromise doesn’t stay contained—it opens the door to the entire network.” 

Article content

(Bloomberg) — Hackers exploited a security flaw in common Microsoft Corp. software to breach governments, businesses and other organizations across the globe and steal sensitive information, according to officials and cybersecurity researchers.

Article content

Microsoft over the weekend released a patch for the vulnerability in servers of the SharePoint document management software. The company said it was still working to roll out other fixes after warnings that hackers were targeting SharePoint clients, using the flaw to enter file systems and execute code.

Article content
Article content

Story continues below

Article content

Multiple different hackers are launching attacks through the Microsoft vulnerability, according to representatives of two cybersecurity firms, CrowdStrike Holdings, Inc. and Google’s Mandiant Consulting.

Article content
Article content

Hackers have already used the flaw to break into the systems of national governments in Europe and the Middle East, according to a person familiar with the matter. In the US, they’ve accessed government systems, including ones belonging to the US Department of Education, Florida’s Department of Revenue and the Rhode Island General Assembly, said the person, who spoke on condition that they not be identified discussing the sensitive information.

Article content

Representatives of the Department of Education and Rhode Island legislature didn’t respond to calls and emails seeking comment Monday. A Florida Department of Revenue spokesperson, Bethany Wester Cutillo, said in an email that the SharePoint vulnerability is being investigated “at multiple levels of government” but that the state agency “does not comment publicly on the software we use for operations.”

Article content

Story continues below

Article content

The hackers also breached the systems of a US-based health-care provider and targeted a public university in Southeast Asia, according to a report from a cybersecurity firm reviewed by Bloomberg News. The report doesn’t identify either entity by name, but says the hackers have attempted to breach SharePoint servers in countries including Brazil, Canada, Indonesia, Spain, South Africa, Switzerland, the UK and the US. The firm asked not to be named because of the sensitivity of the information. 

Article content

In some systems they’ve broken into, the hackers have stolen sign-in credentials, including usernames, passwords, hash codes and tokens, according to a person familiar with the matter, who also spoke on condition that they not be identified discussing the sensitive information.

Article content

“This is a high-severity, high-urgency threat,” said Michael Sikorski, chief technology officer and head of threat intelligence for Unit 42 at Palo Alto Networks Inc. 

Article content

“What makes this especially concerning is SharePoint’s deep integration with Microsoft’s platform, including their services like Office, Teams, OneDrive and Outlook, which has all the information valuable to an attacker,” he said. “A compromise doesn’t stay contained—it opens the door to the entire network.” 

Advertisement 2
Advertisement
Article content

Tens of thousands — if not hundreds of thousands — of businesses and institutions worldwide use SharePoint in some fashion to store and collaborate on documents. Microsoft said that attackers are specifically targeting clients running SharePoint servers from their own on-premise networks, as opposed to being hosted and managed by the tech firm. That could limit the impact to a subsection of customers.

Article content

A Microsoft spokesperson declined to comment beyond an earlier statement.

Article content

“It’s a dream for ransomware operators,” said Silas Cutler, a researcher at Michigan-based cybersecurity firm Censys. He estimated that more than 10,000 companies with SharePoint servers were at risk. The US had the largest number of such firms, followed by the Netherlands, the UK and Canada, he said. 

Article content

The breaches have drawn new scrutiny to Microsoft’s efforts to shore up its cybersecurity after a series of high-profile failures. The firm has hired executives from places like the US government and holds weekly meetings with senior executives to make its software more resilient. The company’s tech has been subject to several widespread and damaging hacks in recent years, and a 2024 US government report described the company’s security culture as in need of urgent reforms.

Article content

Story continues below

Article content

The Center for Internet Security, which operates a cybersecurity information sharing system for state and local governments in the US, found more than 1,100 servers that are at risk from the SharePoint vulnerability, said Randy Rose, the organization’s vice president of security operations and intelligence. Rose said more than 100 were likely hacked.

Article content

The Washington Post reported that the breach had affected US federal and state agencies, universities, energy companies and an Asian telecommunications company, citing state officials and private researchers.

Article content

Eye Security was the first to identify that attackers were actively exploiting the vulnerabilities in a wave of cyberattacks that began on Friday, said Vaisha Bernard, the company’s chief hacker and co-owner.

Article content

Eye Security said the vulnerability allows hackers to access SharePoint servers and steal keys that can let them impersonate users or services even after the server is patched. It said hackers can maintain access through backdoors or modified components that can survive updates and reboots of systems.

Article content

Story continues below

Article content

The SharePoint vulnerabilities, known as “ToolShell,” were first identified in May by researchers at a Berlin cybersecurity conference. In early July, Microsoft issued patches to fix the security holes, but hackers found another way in.

Article content

“There were ways around the patches,” which enabled hackers to break into SharePoint servers by tapping into similar vulnerabilities, said Bernard. “That allowed these attacks to happen.” The intrusions, he said, were not targeted and instead were aimed at compromising as many victims as possible. After scanning about 8,000 SharePoint servers, Bernard said he has so far identified at least 50 that were successfully compromised.

Article content

He declined to identify the identity of organizations that had been targeted, but said they included government agencies and private companies, including “bigger multinationals.” The victims were located in countries in North and South America, the EU, South Africa, and Australia, he added.

Article content
Article content

—With assistance from Lynn Doan, Cameron Fozi, Daniel Cancel, Aashna Shah, Jane Lanhee Lee and Patrick Howell O’Neill.

Article content

(Updates with additional information beginning in third paragraph.)

Article content

Comments
You must be logged in to join the discussion or read more comments.
Create an AccountSign in
Join the Conversation

Postmedia is committed to maintaining a lively but civil forum for discussion. Please keep comments relevant and respectful. Comments may take up to an hour to appear on the site. You will receive an email if there is a reply to your comment, an update to a thread you follow or if a user you follow comments. Visit our Community Guidelines for more information.

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Microsoft

Microsoft Canada president vows ‘community-first approach’ to AI investment

Share this Story : Toronto Sun Copy Link Email X Reddit Pinterest LinkedIn Tumblr Breadcrumb Trail Links Money News Ontario Technology Microsoft Canada president vows ‘community-first approach’ to AI investment Tech giant announced $19-billion investment to expand AI and cloud infrastructure in Ontario and Quebec Author of the article: Ling Hui Published Apr 08, 2026

Microsoft Canada president vows ‘community-first approach’ to AI investment

Tech giant announced $19-billion investment to expand AI and cloud infrastructure in Ontario and Quebec

Article content

Microsoft said its billion-dollar investment to expand artificial intelligence infrastructure at Ontario and Quebec data centres will include a “community-first approach,” taking into account concerns from the local communities.

Advertisement 2
Story continues below
Article content

In December, the tech giant had announced a $19-billion investment — the largest in Canadian history — to expand its AI and cloud infrastructure in the two provinces.

Article content
Article content

In a blog post Tuesday, Microsoft Canada president Matt Milton said the company is aware that Canadians have “real questions” about affordability, energy and water use, jobs and the impact on communities regarding its AI investment.

“At Microsoft, we believe communities should share in the benefits of AI infrastructure and they should not bear the costs,” Milton said.

Electricity costs, water usage among concerns

He said the company’s five “community-first” principles will shape how it will build and operate its data centres in Ontario and Quebec.

Among those principles he outlined was the company’s commitment to “paying our way on electricity” to ensure that its data centres don’t increase electricity prices for Canadians and put added strain on the grid.

Milton said the company will work with provinces, utilities, system operators and regulators to plan new supply in advance. He also said the company will pay the full cost of the electricity it uses, including the cost of new generation, transmission and grid upgrades.

Advertisement 3
Story continues below
Article content

Milton also said that Canada’s cooler climate means the company can cool its data centres mostly using outside air, “using water for cooling less than 5% of the year.”

RECOMMENDED VIDEO

Loading...
We apologize, but this video has failed to load.
Try refreshing your browser, or
tap here to see other videos from our team.

Thousands employed in construction process

He also said the company will work with local governments, conservation partners and research institutions on water projects.

Milton said Microsoft’s data centre investment in Canada will employ about 2,000 workers across all sites during construction with 400 Canadian businesses involved during the construction phase.

He said once its data centres are built and operational, the company will create 250 full-time jobs and hire about 400 contractors to maintain and operate its sites.

Read More

  1. Microsoft Corp. signage in New York City, Oct. 25, 2src24.
    Microsoft touts $500 million AI savings while slashing jobs
  2. Plaintiffs who have filed lawsuits against social media companies hold photos of loved ones outside of the Los Angeles Superior Court on March 25, 2src26 in Los Angeles, Calif. A Los Angeles jury found social media giants Meta and Google liable for designing addictive social media platforms that harmed a young woman’s mental health.
    Plaintiff awarded $6M in landmark social media lawsuit against Google, Meta

Article content
Comments
You must be logged in to join the discussion or read more comments.
Create an AccountSign in
Join the Conversation

Postmedia is committed to maintaining a lively but civil forum for discussion. Please keep comments relevant and respectful. Comments may take up to an hour to appear on the site. You will receive an email if there is a reply to your comment, an update to a thread you follow or if a user you follow comments. Visit our Community Guidelines for more information.

Article content

Microsoft said its billion-dollar investment to expand artificial intelligence infrastructure at Ontario and Quebec data centres will include a “community-first approach,” taking into account concerns from the local communities.

Advertisement 2
Story continues below
Article content

In December, the tech giant had announced a $19-billion investment — the largest in Canadian history — to expand its AI and cloud infrastructure in the two provinces.

Article content
Article content

In a blog post Tuesday, Microsoft Canada president Matt Milton said the company is aware that Canadians have “real questions” about affordability, energy and water use, jobs and the impact on communities regarding its AI investment.

“At Microsoft, we believe communities should share in the benefits of AI infrastructure and they should not bear the costs,” Milton said.

Electricity costs, water usage among concerns

He said the company’s five “community-first” principles will shape how it will build and operate its data centres in Ontario and Quebec.

Among those principles he outlined was the company’s commitment to “paying our way on electricity” to ensure that its data centres don’t increase electricity prices for Canadians and put added strain on the grid.

Milton said the company will work with provinces, utilities, system operators and regulators to plan new supply in advance. He also said the company will pay the full cost of the electricity it uses, including the cost of new generation, transmission and grid upgrades.

Advertisement 3
Story continues below
Article content

Milton also said that Canada’s cooler climate means the company can cool its data centres mostly using outside air, “using water for cooling less than 5% of the year.”

RECOMMENDED VIDEO

Loading...
We apologize, but this video has failed to load.
Try refreshing your browser, or
tap here to see other videos from our team.

Thousands employed in construction process

He also said the company will work with local governments, conservation partners and research institutions on water projects.

Milton said Microsoft’s data centre investment in Canada will employ about 2,000 workers across all sites during construction with 400 Canadian businesses involved during the construction phase.

He said once its data centres are built and operational, the company will create 250 full-time jobs and hire about 400 contractors to maintain and operate its sites.

Read More

  1. Microsoft Corp. signage in New York City, Oct. 25, 2src24.
    Microsoft touts $500 million AI savings while slashing jobs
  2. Plaintiffs who have filed lawsuits against social media companies hold photos of loved ones outside of the Los Angeles Superior Court on March 25, 2src26 in Los Angeles, Calif. A Los Angeles jury found social media giants Meta and Google liable for designing addictive social media platforms that harmed a young woman’s mental health.
    Plaintiff awarded $6M in landmark social media lawsuit against Google, Meta

Article content
Comments
You must be logged in to join the discussion or read more comments.
Create an AccountSign in
Join the Conversation

Postmedia is committed to maintaining a lively but civil forum for discussion. Please keep comments relevant and respectful. Comments may take up to an hour to appear on the site. You will receive an email if there is a reply to your comment, an update to a thread you follow or if a user you follow comments. Visit our Community Guidelines for more information.

Read More

Continue Reading
Microsoft

PS5 Reportedly Hands Forza Horizon 5 an Additional 5 Million Sales

Resulting in $300 million of revenue.The PS5 version of Forza Horizon 5 has now sold more than five million units since its April 2025 launch and made over $300 million in revenue for publisher Microsoft, one Alinea Analytics reporter claims.Rhys Elliott of the analytical firm posted to social media that…

Resulting in $300 million of revenue.The PS5 version of Forza Horizon 5 has now sold more than five million units since its April 2025 launch and made over $300 million in revenue for publisher Microsoft, one Alinea Analytics reporter claims.Rhys Elliott of the analytical firm posted to social media that…
Read More

Continue Reading
Microsoft

Former Elder Scrolls Online Boss Says Xbox Cancellation Drove Him To Leave Bethesda

Project Blackbird was a new IP at the studio.Back in July, when Microsoft cancelled a bunch of projects amidst a huge shakeup for its Xbox division, The Elder Scrolls Online boss Matt Firor left the company — and now, roughly six months later, the former ZeniMax leader has gone into a bit more detail about

Project Blackbird was a new IP at the studio.Back in July, when Microsoft cancelled a bunch of projects amidst a huge shakeup for its Xbox division, The Elder Scrolls Online boss Matt Firor left the company — and now, roughly six months later, the former ZeniMax leader has gone into a bit more detail about why he chose to leave amidst this shakeup.Taking to social media in the new year…
Read More

Continue Reading
Microsoft

Crypto Miners Surge on US$17.4B Microsoft–Nebius AI Chip Deal

Shares of cryptocurrency mining firms rose sharply on Tuesday following news of a major deal between Nebius Group and Microsoft, valued at US$17.4 billion (AU$26.36 billion). The agreement, running through 2031, will see the Netherlands-based Nebius provide dedicated GPU capacity to Microsoft’s artificial intelligence operations, with the option for expansion up to US$19.4 billion (AU$29.37

Shares of cryptocurrency mining firms rose sharply on Tuesday following news of a major deal between Nebius Group and Microsoft, valued at US$17.4 billion (AU$26.36 billion). The agreement, running through 2031, will see the Netherlands-based Nebius provide dedicated GPU capacity to Microsoft’s artificial intelligence operations, with the option for expansion up to US$19.4 billion (AU$29.37 […]
The post Crypto Miners Surge on US$17.4B Microsoft–Nebius AI Chip Deal appeared first on Crypto News Australia…
Read More

Continue Reading