SharePoint Under Fire Again: Exploit Published, Attacks Within 24 Hours
One day after a proof-of-concept went public, attackers hit honeypots. CVE-2026-55040 bypasses authentication in SharePoint entirely.
All articles in the "Cybersecurity & Protection" category.
One day after a proof-of-concept went public, attackers hit honeypots. CVE-2026-55040 bypasses authentication in SharePoint entirely.
A critical flaw in the vCenter Syslog Server is under active exploitation. Of 361 compromised instances, 55 sit in Germany.
Multiple vulnerabilities in WordPress let attackers inject scripts, escalate privileges and bypass security controls.
Apple has patched a macOS screen sharing flaw that let attackers on the network log in without valid credentials.
Ransomware attackers now deliberately destroy backups before encrypting. How the cyber kill chain works and how to make your data protection resilient.
A draft law would give Germany's BND and domestic intelligence access to zero-day flaws and vehicle data, plus hackback powers. The IT industry is warning.
The WordPress flaw XSS2Shell (CVE-2026-64638) can lead to server takeover via a crafted link. Version 7.0.3 closes the vulnerability.
The zero-click flaw Zoomsday (CVE-2026-53413) lets attackers execute code on other participants' devices from within a meeting, with no user interaction.
A study with 7,741 participants shows AI-assisted personalization nearly triples phishing click rates, from 3.9 to 10 percent.