The iOS 18.6, iPadOS 18.6, and macOS Sequoia 15.6 updates that Apple released yesterday address a major zero-day attack that targeted Chrome users, according to Bleeping Computer. Apple says that CVE-2025-6558 was a vulnerability in open source code that also affected Apple software. The flaw could allow remote attackers to execute arbitrary code using HTML pages created for that purpose, …
Read More »Tag Archives: ZeroDay
Google, Microsoft say Chinese hackers are exploiting SharePoint zero-day
Security researchers at Google and Microsoft say they have evidence that hackers backed by China are exploiting a zero-day bug in Microsoft SharePoint, as companies around the world scramble to patch the flaw. The bug, known officially as CVE-2025-53770 and discovered last weekend, allows hackers to steal sensitive private keys from self-hosted versions of SharePoint, a software server widely used …
Read More »Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent Access – The Hacker News
Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent Access The Hacker News Global hack on Microsoft product hits U.S., state agencies, researchers say The Washington Post Microsoft Sharepoint ToolShell attacks linked to Chinese hackers BleepingComputer Why Microsoft Is Urging Security Updates for SharePoint Customers Barron’s Agencies face tight deadline to mitigate SharePoint vulnerability Federal News Network Source link
Read More »Hackers exploiting SharePoint zero-day seen targeting government agencies
The hackers behind the initial wave of attacks exploiting a zero-day in Microsoft SharePoint servers have so far primarily targeted government organizations, according to researchers and news reports. Over the weekend, U.S. cybersecurity agency CISA published an alert, warning that hackers were exploiting a previously unknown bug — known as a “zero-day” — in Microsoft’s enterprise data management product SharePoint. …
Read More »Microsoft Fix Targets Attacks on SharePoint Zero-Day – Krebs on Security
On Sunday, July 20, Microsoft Corp. issued an emergency security update for a vulnerability in SharePoint Server that is actively being exploited to compromise vulnerable organizations. The patch comes amid reports that malicious hackers have used the SharePoint flaw to breach U.S. federal and state agencies, universities, and energy companies. Image: Shutterstock, by Ascannio. In an advisory about the SharePoint …
Read More »Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations – The Hacker News
Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations The Hacker NewsView Full Coverage on Google News Source link
Read More »