FBI: nation-state hackers breached the networks of two US municipalities last year, targeting a Microsoft SharePoint vulnerability that was patched in February
Catalin Cimpanu / ZDNet : Tweets: @gossithedog , @bad_packets , @protaapp , and @dangoodin001 Tweets: Kevin Beaumont / @gossithedog : This SharePoint vulnerability CVE-2019-0604 from a year ago is being used to breach further US organisations. I am aware of more orgs who haven't yet disclosed not in this article but some are a Big Deal. Patch rates are still TERRIBLE. https://www.zdnet.com/... @bad_packets : “Throughout 2019, this particular SharePoint vulnerability was one of the most exploited security flaws, by both financially-motivated cybercriminals, but also nation-state-sponsored cyber-espionage groups.” https://www.zdnet.com/... @protaapp : “An unpatched SharePoint server was utilized to gain access to a US municipality's network, steal the Active Directory (AD) database, compromise administrative credentials, and drop webshells for remote/backdoor access to the compromised servers” https://www.zdnet.com/... Dan Goodin / @dangoodin001 : Nation-state hackers breached the networks of two US municipalities last year, the FBI said in a security alert sent to private industry partners. Both hacks exploited already fixed SharePoint flaws https://www.zdnet.com/... by @campuscodi