News

Google’s Threat Analysis Group (TAG) has been credited with discovering and reporting the flaw on June 23, 2025.
Microsoft has released security patches for the zero-day vulnerability chain dubbed ToolShell, capable of remote code ...
The active exploitation of a dangerous zero-day vulnerability chain in Microsoft SharePoint – which was disclosed over the ...
Critical zero-day vulnerabilities in Microsoft SharePoint, tracked as CVE-2025-53770 and CVE-2025-53771, have been actively ...
Microsoft has pointed the finger at three Chinese nation-state actors for exploiting the SharePoint vulnerabilities. Here's what we know about the security flaws and how to guard against future ...
Microsoft warned SharePoint Server users of a vulnerability dubbed ToolShell in the software that was assigned CVE-2025-53770 ...
Admins urged to rotate machine keys, restart IIS after emergency fix Microsoft has good news for administrators running ...
PLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more Infosec In Brief Microsoft has warned users of SharePoint Server that three on-prem versions of the ...
A top security researcher claims the massive SharePoint zero-day attack was fueled by a leak from a Microsoft partner program ...
Microsoft has patched the critical CVE-2025-53770 SharePoint zero-day for Subscription Edition and 2019, urging customers to ...
Microsoft’s emergency fixes have not stemmed the “ToolShell” tide. The critical SharePoint zero‑day (CVE‑2025‑53770, CVSS 9.8 ...