
🚨⚠️ A Critical ZERO-DAY (CVE-2025-53770)
About this episode
Got a question or comment? Message us here!
A critical zero-day (CVE-2025-53770) is actively targeting on-premises SharePoint servers AND it’s already been used to compromise over 100 organizations. In this #SOCBrief, Andrew and Tanner break down how the exploit works and what steps your team should take now. If your SharePoint instance is public-facing and unpatched ... assume compromise.
🎧 Tune in for insights, mitigation tips, and what to look for in your logs.
Links:
- https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
- https://learn.microsoft.com/en-us/defender-xdr/advanced-hunting-overview
- https://www.cisa.gov/news-events/alerts/2025/07/20/update-microsoft-releases-guidance-exploitation-sharepoint-vulnerabilities
Watch full episodes at youtube.com/@aliascybersecurity.
Listen on Apple Podcasts, Spotify and anywhere you get your podcasts.
Get every episode summarized
Each time Secure AF - A Cybersecurity Podcast publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Secure AF - A Cybersecurity Podcast

Qilin Ransomware’s EDR Killer DLL – How Attackers Are Subverting Defenses
Secure AF - A Cybersecurity Podcast

AI’s Inflection Point: From Productivity Tool to Existential Risk
Secure AF - A Cybersecurity Podcast

Axios NPM Supply Chain Compromise – Lessons for SOCs on Third-Party Risks
Secure AF - A Cybersecurity Podcast

Black Shrantac Ransomware – LOTL Tactics and Double Extortion on the Rise
Secure AF - A Cybersecurity Podcast