Chinese Hackers Now Exploiting SharePoint Zero-Days to Deploy Warlock Ransomware: MSFT

Chinese Hackers Now Exploiting SharePoint Zero-Days to Deploy Warlock Ransomware: MSFT Microsoft Threat Intelligence in an updated warning said that China-based hackers, which it tracks as Storm-2603, has quickly pivoted and now exploiting unpatched on-premise SharePoint systems to depl … Read more Published Date: Jul 24, 2025 (1 hour, 34 minutes ago) Vulnerabilities has been mentioned in […]

Kritiek lek in SonicWall-gateway maakt remote code execution mogelijk

Kritiek lek in SonicWall-gateway maakt remote code execution mogelijk Een kritieke kwetsbaarheid in SMA 100-gateway van securitybedrijf SonicWall maakt remote code execution mogelijk. Het bedrijf heeft een update uitgebracht om het probleem te verhelpen. Daarnaast waars … Read more Published Date: Jul 24, 2025 (1 hour, 54 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-40599

Metasploit Module Released For Actively Exploited SharePoint 0-Day Vulnerabilities

Metasploit Module Released For Actively Exploited SharePoint 0-Day Vulnerabilities Researchers have developed a new Metasploit exploit module targeting critical zero-day vulnerabilities in Microsoft SharePoint Server that are being actively exploited in the wild. The module, designa … Read more Published Date: Jul 24, 2025 (2 hours, 11 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-53771 […]

SonicWall urges admins to patch critical RCE flaw in SMA 100 devices

SonicWall urges admins to patch critical RCE flaw in SMA 100 devices SonicWall urges customers to patch SMA 100 series appliances against a critical authenticated arbitrary file upload vulnerability that can let attackers gain remote code execution. The security flaw ( … Read more Published Date: Jul 24, 2025 (2 hours, 25 minutes ago) Vulnerabilities has been […]

Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems

Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems Jul 24, 2025Ravie LakshmananVulnerability / Ransomware Microsoft has revealed that one of the threat actors behind the active exploitation of SharePoint flaws is deploying Warlock ransomware on targ … Read more Published Date: Jul 24, 2025 (3 hours, 5 minutes ago) Vulnerabilities has been mentioned in […]

GitLab Security Update – Patch for Multiple Vulnerabilities in Community and Enterprise Edition

GitLab Security Update – Patch for Multiple Vulnerabilities in Community and Enterprise Edition GitLab has released critical security patches addressing multiple vulnerabilities across its Community Edition (CE) and Enterprise Edition (EE) platforms, with versions 18.2.1, 18.1.3, and 18.0.5 now … Read more Published Date: Jul 24, 2025 (1 hour, 23 minutes ago) Vulnerabilities has been mentioned in […]

SonicWall SMA 100 Vulnerabilities Let Attackers Execute Arbitrary JavaScript Code

SonicWall SMA 100 Vulnerabilities Let Attackers Execute Arbitrary JavaScript Code Critical security vulnerabilities affecting SonicWall SMA 100 series SSL-VPN appliances that could allow remote attackers to execute arbitrary JavaScript code and potentially achieve code execution wi … Read more Published Date: Jul 24, 2025 (1 hour, 27 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-40598 […]

Sonicwall fixes critical flaw in SMA appliances, urges customers to check for compromise (CVE-2025-40599)

Sonicwall fixes critical flaw in SMA appliances, urges customers to check for compromise (CVE-2025-40599) Sonicwall is asking customers running specific Secure Mobile Access (SMA) 100 Series devices to patch a newly uncovered vulnerability (CVE-2025-40599) as soon as possible. “While there is currently no … Read more Published Date: Jul 24, 2025 (1 hour, 31 minutes ago) Vulnerabilities […]

Microsoft: SharePoint servers also targeted in ransomware attacks

Microsoft: SharePoint servers also targeted in ransomware attacks A China-based hacking group is deploying Warlock ransomware on Microsoft SharePoint servers vulnerable to widespread attacks targeting the recently patched ToolShell zero-day exploit chain. “Although … Read more Published Date: Jul 24, 2025 (1 hour, 49 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-53770 CVE-2025-49706 CVE-2025-49704

AWS Client VPN for Windows Vulnerability Let Attackers Escalate Privileges

AWS Client VPN for Windows Vulnerability Let Attackers Escalate Privileges Amazon Web Services has disclosed a critical security vulnerability in its Client VPN software for Windows that could allow attackers to escalate privileges and execute malicious code with administrat … Read more Published Date: Jul 24, 2025 (1 hour, 8 minutes ago) Vulnerabilities has been mentioned in […]