CyberWire Daily

The SharePoint siege goes strategic.

12 snips
Jul 22, 2025
Michael Daniel, a key figure at the Cyber Threat Alliance (CTA), dives into the pressing world of cybersecurity. He discusses the recent confusion over Microsoft SharePoint zero-days and highlights the troubling rise of AI-driven ransom negotiations. Daniel emphasizes the need for collaboration and trust among cybersecurity entities, drawing from lessons learned during incidents like WannaCry. The conversation further explores the evolving challenges in public-private partnerships and the critical responses to state-sponsored cyber threats.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

SharePoint Zero-Day Exploitation Insight

  • SharePoint zero-day attacks exploited unauthenticated remote code execution and spoofing despite patches.
  • Over 9,000 internet-facing SharePoint servers are at risk, mainly in North America and Europe.
ADVICE

Urgent SharePoint Security Measures

  • Immediately patch SharePoint servers vulnerable to CVEs recognized by CISA.
  • Rotate cryptographic keys post-remediation to prevent further compromise.
INSIGHT

CrushFTP Zero-Day Exploitation Insight

  • CrushFTP zero-day exploited actively worldwide mainly on systems using outdated versions.
  • Threat actors disguise vulnerable systems as updated to avoid detection.
Get the Snipd Podcast app to discover more snips from this episode
Get the app