Category: Securityaffairs

new ToolShell attacks target enterprises
22
Jul
2025

new ToolShell attacks target enterprises

SharePoint under fire: new ToolShell attacks target enterprises Pierluigi Paganini July 22, 2025 While SentinelOne did not attribute the attack…

CrushFTP CVE-2025-2825 flaw actively exploited in the wild
22
Jul
2025

CrushFTP Zero-Day actively exploited at least since July 18

CrushFTP zero-day actively exploited at least since July 18 Pierluigi Paganini July 22, 2025 Hackers exploit CrushFTP zero-day, tracked as…

HPE fixed multiple flaws in its StoreOnce software
22
Jul
2025

Hardcoded credentials found in HPE Aruba Instant On Wi-Fi devices

Hardcoded credentials found in HPE Aruba Instant On Wi-Fi devices Pierluigi Paganini July 22, 2025 Hardcoded credentials in HPE Aruba…

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict
21
Jul
2025

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict

MuddyWater deploys new DCHSpy variants amid Iran-Israel conflict Pierluigi Paganini July 21, 2025 Iran-linked APT MuddyWater is deploying new DCHSpy…

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog
21
Jul
2025

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog Pierluigi Paganini July 21,…

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog
21
Jul
2025

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog

U.S. CISA urges to immediately patch Microsoft SharePoint flaw adding it to its Known Exploited Vulnerabilities catalog Pierluigi Paganini July 21,…

Microsoft issues emergency patches for SharePoint zero-days exploited in "ToolShell" attacks
21
Jul
2025

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks Pierluigi Paganini July 21, 2025 Microsoft patched an exploited…

SharePoint zero-day CVE-2025-53770 actively exploited in the wild
21
Jul
2025

SharePoint zero-day CVE-2025-53770 actively exploited in the wild

SharePoint zero-day CVE-2025-53770 actively exploited in the wild Pierluigi Paganini July 21, 2025 Microsoft warns of ongoing active exploitation of…

Singapore warns China-linked group UNC3886 targets its critical infrastructure
20
Jul
2025

Singapore warns China-linked group UNC3886 targets its critical infrastructure

Singapore warns China-linked group UNC3886 targets its critical infrastructure Pierluigi Paganini July 20, 2025 Singapore says China-linked group UNC3886 targeted…

U.S. CISA adds Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalog
20
Jul
2025

U.S. CISA adds Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Fortinet FortiWeb flaw to its Known Exploited Vulnerabilities catalog Pierluigi Paganini July 20, 2025 U.S. Cybersecurity and Infrastructure…

SECURITY AFFAIRS MALWARE NEWSLETTER – ROUND 42
20
Jul
2025

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 54

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape KongTuke…

Security Affairs newsletter Round 527 by Pierluigi Paganini – INTERNATIONAL EDITION
20
Jul
2025

Security Affairs newsletter Round 533 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 533 by Pierluigi Paganini – INTERNATIONAL EDITION Pierluigi Paganini July 20, 2025 A new round of…