You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
zero day attack
About this tag
A zero day attack exploits a previously unknown vulnerability before the software vendor can release a patch. On WindowsForum.com, discussions focus on the CVE-2025-53770 zero-day vulnerability in Microsoft's on-premises SharePoint Server, which has been actively exploited in a global cyberattack affecting tens of thousands of servers. This zero day attack allows unauthenticated remote code execution, giving attackers full control over compromised systems. The attack was first detected by cybersecurity firm Eye Security and has impacted both US government agencies and major energy corporations. SharePoint Online in Microsoft 365 remains unaffected. These threads highlight the critical enterprise security gaps exposed by such zero day attacks and the urgent need for patching and monitoring.
A critical zero-day vulnerability, identified as CVE-2025-53770, has been actively exploited in Microsoft's on-premises SharePoint Server, compromising approximately 100 organizations globally. This flaw allows unauthenticated attackers to execute remote code, granting them full control over...
In the aftermath of a sweeping global cyberattack that has compromised tens of thousands of Microsoft SharePoint servers, both US government agencies and major energy corporations find themselves grappling with the daunting implications of one of the most significant data breaches in recent...