// Microsoft 365HIGH
Switzerland's Federal IT Agency (FOITT) disclosed a compromise of approximately 200 user and technical accounts on on-premises SharePoint servers. Attackers exploited SharePoint vulnerabilities, likely CVE-2026-50522 (CVSS 9.8), disclosed in Microsoft's July 2026 Patch Tuesday. The breach was detected July 28, 2026, and confirmed July 31. FOITT has reset compromised credentials, blocked external SharePoint access, and is rebuilding affected servers with support from Swiss national cybersecurity authorities.
- SharePoint Flaws Used to Hack Switzerland's Federal IT Agency(opens in a new tab)
- Swiss government SharePoint breach compromised 200 accounts(opens in a new tab)
- Swiss government SharePoint breach compromised 200 accounts(opens in a new tab)
- Swiss government says SharePoint-linked data breach affected hun(opens in a new tab)
// Get alerts for Microsoft 365