News

Microsoft has pointed the finger at three Chinese nation-state actors for exploiting the SharePoint vulnerabilities. Here's what we know about the security flaws and how to guard against future ...
Active SharePoint exploits since July 7 target governments and tech firms globally, risking key theft and persistent access.
Admins urged to rotate machine keys, restart IIS after emergency fix Microsoft has good news for administrators running ...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), in an alert, said it's aware of active exploitation of ...
The vulnerability, tracked as CVE-2025-53770, carries a severity rating of 9.8 out of a possible 10. It gives unauthenticated ...
Microsoft has released security patches for the zero-day vulnerability chain dubbed ToolShell, capable of remote code ...
Hackers have been exploiting two zero-day vulnerabilities in on-premises installations of Microsoft SharePoint to gain remote ...
Microsoft also has issued a patch for a related SharePoint vulnerability — CVE-2025-53771; Microsoft says there are no signs ...
CISA gave agencies until the end of the day on Monday to mitigate a severe zero-day vulnerability in Microsoft's widely used ...
Microsoft has issued an emergency fix to close off a vulnerability in Microsoft's SharePoint software that hackers have ...
Security researchers say Microsoft customers should take immediate action to defend against the ongoing cyberattacks, and ...
A July 8 fix for a critical SharePoint zero-day failed to stop active exploitation, enabling state-backed attackers to breach ...