CVE Tools

200 accounts compromised in Swiss government’s Microsoft SharePoint breach

Help Net SecurityBy Sinisa Markovic

Reported exploitedSharePoint Servers

Our summary

Hackers compromised approximately 200 accounts in Switzerland’s Federal Office of Information Technology, Systems and Telecommunication (BIT) by exploiting vulnerabilities in its Microsoft SharePoint servers. The breach was discovered following unusual activity observed on July 28, prompting BIT to isolate the affected systems and patch the flaws. By July 31, investigators confirmed that both user and technical account credentials had been stolen. While the exact vulnerabilities used have not been specified, the agency suspects one of two recently patched SharePoint flaws—CVE-2026-56164 or CVE-2026-50522—were exploited. BIT is working with Microsoft and the Federal Office for Cybersecurity (BACS) to assess the incident. Fortunately, no sensitive data appears to have been leaked.

Read at Help Net Security

Help Net Security publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store