Friday, November 21, 2025
Follow on LinkedIn
CISA Warns of Chinese Hackers Exploiting SharePoint 0-Day Flaws in Active Exploitation

CISA Warns of Chinese Hackers Exploiting SharePoint 0-Day Flaws in Active Exploitation

CISA has issued an urgent alert regarding active exploitation of critical Microsoft SharePoint vulnerabilities by suspected Chinese threat actors.  The attack campaign, dubbed "ToolShell," leverages...
SharePoint WebPart Vulnerability

Critical SharePoint RCE Vulnerability Exploited Using Malicious XML Payload Within Web Part

A newly disclosed remote code execution (RCE) vulnerability in Microsoft SharePoint has been identified, affecting the deserialization process of WebPart properties.  The vulnerability enables attackers...

Microsoft Enhances Exchange & SharePoint Security With New Antimalware Scan

Microsoft has announced a significant security upgrade for Exchange Server and SharePoint Server through integration with the Windows Antimalware Scan Interface (AMSI), providing critical...
Hackers Leveraging Microsoft Visio Files And SharePoint For Two-Step Phishing Attack

Hackers Leveraging Microsoft Visio Files & SharePoint For Two-Step Phishing Attack

A new sophisticated phishing technique utilizes Microsoft Visio files and SharePoint in a two-step phishing attack. This two-step attack method represents a significant evolution in...
QR Code Phishing Attack Bypasses Email Security Scanners And Abuse SharePoint

QR Code Phishing Attack Bypasses Email Security Scanners & Abuse SharePoint

Quishing, or QR code phishing, is rapidly evolving as threat actors adapt their tactics to bypass email security scanners. By incorporating QR codes into phishing...
PoC Exploit Published For SharePoint XML eXternal Entity (XXE) Injection Vulnerability

PoC Exploit Published For SharePoint XML eXternal Entity (XXE) Injection Vulnerability

A new XXE (XML eXternal Entity) Injection has been discovered to affect SharePoint on both on-prem and cloud instances. This vulnerability has been assigned...
Hackers Exploiting Microsoft Sharepoint Vulnerability to Hack Government Organization Networks

Hackers Exploiting Microsoft Sharepoint Vulnerability to Hack Government Organization Networks

Researchers observed that the cybercriminals are still exploiting the patched MS Sharepoint remote code execution vulnerability to compromise the government organization in the Middle...
CSN

Top 10