Category: Securityaffairs

Sophos fixed two critical Sophos Firewall vulnerabilities
24
Jul
2025

Sophos fixed two critical Sophos Firewall vulnerabilities

Sophos fixed two critical Sophos Firewall vulnerabilities Pierluigi Paganini July 23, 2025 Sophos addressed five Sophos Firewall vulnerabilities that could…

French Authorities confirm XSS.is admin arrested in Ukraine
23
Jul
2025

French Authorities confirm XSS.is admin arrested in Ukraine

French Authorities confirm XSS.is admin arrested in Ukraine Pierluigi Paganini July 23, 2025 French authorities announced the arrest in Ukraine…

Italian police arrested a Chinese national suspected of cyberespionage on a U.S. warrant
23
Jul
2025

Microsoft linked attacks on SharePoint flaws to China-nexus actors

Microsoft linked attacks on SharePoint flaws to China-nexus actors Pierluigi Paganini July 23, 2025 Microsoft linked SharePoint exploits to China-nexus…

Cisco confirms active exploitation of ISE and ISE-PIC flaws
22
Jul
2025

Cisco confirms active exploitation of ISE and ISE-PIC flaws

Cisco confirms active exploitation of ISE and ISE-PIC flaws Pierluigi Paganini July 22, 2025 Cisco warns of active exploits targeting…

new ToolShell attacks target enterprises
22
Jul
2025

new ToolShell attacks target enterprises

SharePoint under fire: new ToolShell attacks target enterprises Pierluigi Paganini July 22, 2025 While SentinelOne did not attribute the attack…

CrushFTP CVE-2025-2825 flaw actively exploited in the wild
22
Jul
2025

CrushFTP Zero-Day actively exploited at least since July 18

CrushFTP zero-day actively exploited at least since July 18 Pierluigi Paganini July 22, 2025 Hackers exploit CrushFTP zero-day, tracked as…

HPE fixed multiple flaws in its StoreOnce software
22
Jul
2025

Hardcoded credentials found in HPE Aruba Instant On Wi-Fi devices

Hardcoded credentials found in HPE Aruba Instant On Wi-Fi devices Pierluigi Paganini July 22, 2025 Hardcoded credentials in HPE Aruba…

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict
21
Jul
2025

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict Pierluigi Paganini July 21, 2025 Iran-linked APT MuddyWater is deploying new DCHSpy…

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog
21
Jul
2025

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog Pierluigi Paganini July 21,…

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog
21
Jul
2025

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog Pierluigi Paganini July 21,…

Microsoft issues emergency patches for SharePoint zero-days exploited in "ToolShell" attacks
21
Jul
2025

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks Pierluigi Paganini July 21, 2025 Microsoft patched an exploited…

SharePoint zero-day CVE-2025-53770 actively exploited in the wild
21
Jul
2025

SharePoint zero-day CVE-2025-53770 actively exploited in the wild

SharePoint zero-day CVE-2025-53770 actively exploited in the wild Pierluigi Paganini July 21, 2025 Microsoft warns of ongoing active exploitation of…