When IT Falls, OT Follows: Inside the SharePoint Breach with Ron Reiter artwork
Exploited: The Cyber Truth

When IT Falls, OT Follows: Inside the SharePoint Breach with Ron Reiter

  • S1E20
  • 29:52
  • August 28th 2025

How do you respond when a vulnerability opens the door to your most sensitive data? In this urgent episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security CEO Joe Saunders and special guest Ron Reiter, CTO and co-founder of Sentra, to dissect the SharePoint vulnerabilities (CVE-2025-53770 and CVE-2025-53771) that have already impacted hundreds of organizations, including U.S. government agencies.

Ron explains why this remote code execution flaw is more dangerous than most, how attackers exploit unauthenticated access to steal contracts, customer records, and intellectual property, and why patching alone won’t keep systems safe. Joe underscores the downstream risks for operational technology (OT), where attackers can pivot from IT breaches to disrupt industrial environments.

You’ll learn:

  • Why SharePoint servers are a high-value target for attackers
  • The real risk when IT breaches spill into OT environments
  • Why compliance isn’t enough without true customer data protection
  • Three  steps for security leaders to gain an organization-wide view of cyber security

This episode is a wake-up call for integrated, resilient cybersecurity that safeguards both corporate data and critical operations.

Exploited: The Cyber Truth

Exploited: The Cyber Truth is a hard-hitting, no-fluff podcast exposing the realities of today’s cyber threat landscape and risks to critical infrastructure. Through candid conversations with top cybersecurity experts, industry leaders, and frontline defenders, the show breaks down recent high-profile vulnerabilities and exploits and covers innovative strategies used to stop them. To keep critical infrastructure safe, defenders need the upper hand. Tune in and get the cyber truth.