SharePoint On-Prem Exploited & Keeping on top of changes in M365: Practical 365 Podcast S04E42

The Practical 365 Podcast

The Practical 365 Podcast
SharePoint On-Prem Exploited & Keeping on top of changes in M365: Practical 365 Podcast S04E42
Jul 30, 2025 Season 1 Episode 42
Practical 365

Join Steve Goodman, Paul Robichaux, and Bastiaan Verdonk as they delve into the critical security vulnerabilities affecting on-premises SharePoint servers, including the "ToolShell" exploit chain (CVE-2025-49704, CVE-2025-49706, CVE-2025-53770, CVE-2025-53771) which enables unauthenticated remote code execution. They discuss the scale of the problem, the threat actors involved, and the crucial need for immediate patching and robust operational practices for any remaining on-premises deployments.

The conversation then shifts to the overwhelming challenge of managing the constant stream of updates and changes within Microsoft 365. Special guest Tom Arbuthnot shares insights from his work with Empowering Cloud and their "Change Pilot" service, detailing how they use AI and expert review to help organizations navigate the deluge of Message Center notifications, prioritize impactful changes, and manage the communication around them. Discover practical strategies for staying ahead of the curve in the fast-paced world of Microsoft 365.

Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!

Episode Artwork SharePoint On-Prem Exploited & Keeping on top of changes in M365: Practical 365 Podcast S04E42 48:58 Episode Artwork Analysing Copilot's Zero-Day, Outages, M365 Local and New Copilot Agents: Practical 365 Podcast S4 E41 40:21 Episode Artwork Active Directory Security and Configuration Best Practices with Victor King: Practical 365 Podcast S04E40 41:24 Episode Artwork M365 Numbers, Viva Engage Evolution, and Cybersecurity Leadership with Adam Banks: Practical 365 Podcast S04E39 1:02:16 Episode Artwork On-Premises Pain, Copilot Curiosity, and a Glimpse into Global Secure Access: Practical 365 Podcast S04E38 1:02:49 Episode Artwork Exchange Online Cracks Down, Message Center Madness, and Conditional Access Done Right: Practical 365 Podcast S04 E37 1:01:33 Episode Artwork Exchange Server Updates, AI Hype, and Practical Cybersecurity with Paula Januszkiewicz: The Practical 365 Podcast S4 E36 1:04:02 Episode Artwork So Long Rich, and Thanks for Avoiding the Phish: The Practical 365 Podcast S4 E35 24:06 Episode Artwork Free Copilot Chat Lands For All, Exchange Audit Logging Changes & More: The Practical 365 Podcast S4 E34 37:08 Episode Artwork Cloud.Microsoft Domain Changes, Viva Goals Retirement & Copilot Updates: The Practical 365 Podcast S4 E33 37:24 Episode Artwork Microsoft Places, Teams Features and Copilot Confusion: The Practical 365 Podcast S4 E32 42:26 Episode Artwork Identity Management Deep Dive with Microsoft's Merill Fernando - The Practical 365 Podcast S4E31 57:32 Episode Artwork Copilot Wave 2, Exchange's Final Countdown & Teams Updates - The Practical 365 Podcast S4E30 35:09 Episode Artwork Microsoft Security Copilot: AI's Role in Revolutionizing Cybersecurity - The Practical 365 Podcast S4 E29 1:12:13 Episode Artwork TEC Special: AI, Identity, and the Future of IT with Shinesa Cambric - The Practical 365 Podcast S4 E28 33:14 Episode Artwork TEC Special: Paul Thurrott on Windows future & Copilot taking your job - The Practical 365 Podcast S04 E27 32:43 Episode Artwork TEC Special: Microsoft 365's Darkest Corners & PowerShell Scripting with Tony Redmond & Michel de Rooij - The Practical 365 Podcast S4 E26 31:39 Episode Artwork Improving your AD Security with Derek Melber: The Practical 365 Podcast S4 E25 34:56 Episode Artwork Crowdstrike Fallout, OneDrive Changes and Planner gets Copilot: The Practical 365 Podcast S4 E24 32:36 Episode Artwork Places, Outlook Classic, and Teams Rooms Upgrades: The Practical 365 Podcast S4 E23 25:17 Episode Artwork Microsoft's Security Stumble and AD Modernization Insights: The Practical 365 Podcast S4 E22 1:00:50 Episode Artwork Copilot in SharePoint, Agents & Recall, plus Karin Skapski talks automation: The Practical 365 Podcast S4 E21 59:40 Episode Artwork Mastering ITDR Response - Insights from Microsoft's Andy Jaw: The Practical 365 Podcast S4 E20 1:07:14 Episode Artwork Exchange Server Roadmap, New MS AI model on the way & Entra ID MFA: The Practical 365 Podcast S4 E19 46:47 Episode Artwork Microsoft on Protecting Identity - The Core of Your Digital Ecosystem: The Practical 365 Podcast S4 E18 52:06 Episode Artwork PowerShell, Teams and Exchange News with special guest MVP Michel De Rooij: The Practical 365 Podcast S4 E17 57:05 Episode Artwork Cloud Security News, AI, Copilots and more: The Practical 365 Podcast S4 E16 1:01:09 Episode Artwork Copilot gets more data controls, and MVP Jon Jarvis joins to discuss: should you manage all your devices with Intune?: The Practical 365 Podcast S4 E15 45:21 Episode Artwork Exchange Online Changes, Copilot + Viva plus Identity Migration with Becky Cross: The Practical 365 Podcast S4 E14 50:01 Episode Artwork Teams & Entra ID new features, plus Copilot adoption in the real world: The Practical 365 Podcast S4 E13 46:46