TL;DR CVE-2026-50522 is a critical SharePoint RCE flaw rated CVSS 9.8. Researchers report active exploitation attempts, and...
Sharepoint
At a glance Actor / group Helix (suspected ties to BlackFile and ShinyHunters) Activity type Data extortion...
TL;DR CISA has confirmed active exploitation of three SharePoint vulnerabilities: CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164. Threat actors chain...
TL;DR Microsoft’s July 2026 Patch Tuesday fixes 570 vulnerabilities, including 57 rated critical and 510 rated important....
TL;DR Researchers have published full technical details and proof-of-concept code for a SharePoint remote code execution flaw....
Urgent Patch Alert: SharePoint Spoofing Under Active Attack as Microsoft Releases April 2026 Updates
Urgent Patch Alert: SharePoint Spoofing Under Active Attack as Microsoft Releases April 2026 Updates
Microsoft’s April 2026 Patch Tuesday has arrived with a massive security payload, addressing a staggering 163 vulnerabilities,...
A recent investigation by Trend Micro has revealed a case study where a devastating data exfiltration incident...
A sophisticated cybercriminal group has been observed repurposing a legitimate digital forensics tool as a precursor for...
Researchers from the Sophos Counter Threat Unit (CTU) have published new intelligence on a rising ransomware group...
The Cybersecurity and Infrastructure Security Agency (CISA) has released an in-depth Malware Analysis Report warning of a...
In a revelation, Unit 42 has exposed a financially motivated cyber threat actor cluster, dubbed CL-CRI-1040, with...
A newly released Metasploit module highlights the critical threat posed by an actively exploited remote code execution...
Last week, the Microsoft Security Response Center (MSRC) issued an urgent advisory regarding active exploitation of critical...
On the evening of July 18, 2025, Eye Security identified an active, large-scale exploitation of a newly...
Microsoft 365 Boosts Security: Legacy File Access Protocols RPS & FrontPage RPC Phased Out July 2025
Microsoft 365 Boosts Security: Legacy File Access Protocols RPS & FrontPage RPC Phased Out July 2025
Microsoft routinely phases out outdated protocols used to access its services, primarily to reduce the potential attack...
A recent report from FortiGuard Labs has shed light on an advanced cyber campaign leveraging the open-source...
The Sublime Threat Research Team has uncovered a malicious SharePoint impersonation campaign delivering Xloader malware, also known...
Perception Point’s latest findings have uncovered an advanced two-step phishing technique exploiting Microsoft Visio files (.vsdx) and...
The cybersecurity team at Hunters, AXON, recently uncovered an ongoing threat campaign called VEILDrive that leverages Microsoft...
A recent report from Rapid7’s Incident Response team reveals a serious compromise of a Microsoft SharePoint server...
Two vulnerabilities in Microsoft SharePoint Server have recently come under the spotlight, thanks to the detailed work...