97Articles
8Categories
2025-07-21Date
🚨
Microsoft SharePoint zero-day breach hits on-prem serversEnterprise IT teams face an immediate crisis as Microsoft warned Saturday of active cyberattacks exploiting a previously unknown vulnerability in SharePoint Server, with security researchers confirming dozens of servers compromised globally since attacks began July 18. “Microsoft…
KEV
🐛
Hard-Coded Credentials Found in HPE Instant On Devices Allow Admin Access
🐛
Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks
🐛
CrushFTP 0-Day Vulnerability Actively Exploited to Breach Servers
KEV
🐛
7-Zip Vulnerability Lets Malicious RAR5 Files Crash Systems
🐛
CISA Issues Alert on Microsoft SharePoint 0-Day RCE Exploited in Attacks
KEV
🐛
Hacker greifen über Microsoft-Lücke an
🐛
Livewire Flaw Puts Millions of Laravel Apps at Risk of RCE Attacks
🐛
Microsoft Patches ‘ToolShell’ Zero-Days Exploited to Hack SharePoint Servers
🐛
Microsoft SharePoint servers under attack via zero-day vulnerability (CVE-2025-53770) - Help Net Security
🐛
How quickly do we patch? A quick look from the global viewpoint, (Mon, Jul 21st)
🐛
Researchers Release PoC Exploit for High-Severity NVIDIA AI Toolkit Bug
🐛
Introducing OSS Rebuild: Open Source, Rebuilt to Last
⚠️
Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks
KEV
⚠️
So geht Tabletop Exercise
⚠️
SharePoint 0-Day RCE Flaw Actively Exploited for Full Server Takeover
KEV
⚠️
PoisonSeed Attack Tricks Users into Scanning Malicious MFA QR Codes
⚠️
PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse
⚠️
Is AI here to take or redefine your cybersecurity role?
⚠️
NPM Linter Packages Hijacked, Microsoft's China Issue, and AI in Phishing Attacks: Cybersecurity Today:
⚠️
Exploited CrushFTP Zero-Day Provides Admin Access to Servers
⚠️
From hardcoded credentials to auth gone wrong: Old bugs continue to break modern systems
⚠️
Microsoft AppLocker Flaw Lets Malicious Apps Bypass Security Restrictions
⚠️
The Cyber Canon, ditching the SOC 2, and the weekly enterprise news - Helen Patton - ESW #416
⚠️
Another Supply Chain Vulnerability
⚠️
Surveillance Firm Exploits SS7 Flaw to Track User Locations
⚠️
Over 1,000 CrushFTP servers exposed to ongoing hijack attacks
⚠️
Marketing, Law Firms Say Data Breaches Impact Over 200,000 People
⚠️
⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and More
⚠️
Microsoft to stop using engineers in China to work on U.S. Defense computer systems in wake of investigative report
⚠️
3-line exploit revealed for critical NVIDIA Container Toolkit flaw | SC Media
⚠️
PHP PDO Flaw Allows Attackers to Inject Malicious SQL Commands
⚠️
Update Microsoft SharePoint ASAP | Kaspersky official blog
⚠️
Hackers Exploit Critical CrushFTP Flaw to Gain Admin Access on Unpatched Servers
⚠️
PoisonSeed outsmarts FIDO keys without touching them
⚠️
New zero-day bug in Microsoft SharePoint under widespread attack
⚠️
Microsoft Fix Targets Attacks on SharePoint Zero-Day
⚠️
Surveillance Firm Exploits SS7 Flaw to Track User Locations
⚠️
SharePoint ‘ToolShell’ vulnerabilities being exploited in the wild
KEV
⚠️
AI-Powered Cloaking Tools Help Threat Actors Hide Malicious Domains from Security Scans
⚠️
Attackers Can Exploit Lighthouse Studio RCE Bug to Gain Server Access
⚠️
APT41 Hackers Exploiting Atexec and WmiExec Windows Modules for Malware Deployment
⚠️
Hackers exploiting SharePoint zero-day seen targeting government agencies, say researchers
⚠️
DeerStealer Malware Spread Through Weaponized .LNK and LOLBin Tools
⚠️
UK blames Russia’s infamous ‘Fancy Bear’ group for Microsoft cloud hacks
⚠️
Intel announces end of Clear Linux OS project, archives GitHub repos
⚠️
#StopRansomware: Interlock
KEV
📢
MAD warnt vor russischer Spionage
📢
CrushFTP security advisory (AV25-432)
📢
Microsoft security advisory (AV25-433)
📢
IBM security advisory (AV25-436)
📢
[Control systems] CISA ICS security advisories (AV25–435)
📢
Ubuntu security advisory (AV25-434)
📢
Dell security advisory (AV25-437)
📢
Red Hat security advisory (AV25-438)
📢
Iran-Linked DCHSpy Android Malware Masquerades as VPN Apps to Spy on Dissidents
📢
Hackers Are Laughing at Your WAF 😂
📢
Grafana security advisory (AV25-439)
📢
ISC BIND security advisory (AV25-440)
🔥
3,500 Websites Hijacked to Secretly Mine Crypto Using Stealth JavaScript and WebSocket Tactics
🔥
Klöckner warnt vor Cyberangriffen auf Bundestag
🔥
750,000 Impacted by Data Breach at The Alcohol & Drug Testing Service
🔥
Good Riddance Teespring, Hello Fourthwall
🔥
CoinDCX Hack Leads to $44.2 Million Loss
🔥
Dell confirms breach of test lab platform by World Leaks extortion group
🔥
Europol targets Kremlin-backed cybercrime gang NoName057(16)
🔥
1.4 Million Affected by Data Breach at Virginia Radiology Practice - SecurityWeek
🔥
Anne Arundel Dermatology Data Breach Impacts 1.9 Million People - SecurityWeek
🔥
Indian crypto exchange CoinDCX confirms $44 million stolen during hack
🔥
Dior begins sending data breach notifications to U.S. customers
🔥
Dell confirms breach of test lab platform by World Leaks extortion group
🔥
Afghan data leak: SAS and UK spies named in Afghan data breach
🔥
KAWA4096 Ransomware Employs WMI Techniques to Delete Backup Snapshots
🔥
Dior begins sending data breach notifications to U.S. customers
🔥
Ring denies breach after users report suspicious logins
🕵️
ISC Stormcast For Monday, July 21st, 2025 https://isc.sans.edu/podcastdetail/9534, (Mon, Jul 21st)
🕵️
Surveillance Firm Bypasses SS7 Protections to Retrieve User Location
🕵️
HPE warns of hardcoded passwords in Aruba access points
🕵️
Iranian APT Targets Android Users With New Variants of DCHSpy Spyware
🕵️
Job Seekers Beware: Many People Are Falling for Employment Scams
🕵️
Snake Keylogger Uses Persistence via Scheduled Tasks to Steal Login Data Undetected
🕵️
PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse
🕵️
4 new Android spyware samples linked to Iran's intel agency • The Register
🕵️
New GhostContainer Malware Hits High-Value MS Exchange Servers in Asia
🕵️
Singapore warns China-linked group UNC3886 targets its critical infrastructure
🕵️
China-Linked Hackers Launch Targeted Espionage Campaign on African IT Infrastructure
🕵️
Cybercriminals Use Zoho WorkDrive Folders to Spread Obfuscated PureRAT Malware
🕵️
Boomers? Nah, Gen X Is Built for AI Warfare 🔥
🕵️
Beware of npm Phishing Emails Targeting Developer Credentials
🕵️
Threat Actors Compromise Popular npm Packages to Steal Maintainers’ Tokens
🕵️
UNG0002 Deploys Weaponized LNK Files with Cobalt Strike and Metasploit to Target Organizations
🌐
Serial spyware founder Scott Zuckerman wants the FTC to unban him from the surveillance industry
📡
Learn 14 Languages from Babbel with this exclusive StackSocial deal
📡
Assessing the Role of AI in Zero Trust
📡
Don’t miss your chance to exhibit at TechCrunch Disrupt 2025
📡
Veeam Recovery Orchestrator users locked out after MFA rollout
📡
ExpressVPN bug leaked user IPs in Remote Desktop sessions