Gajdek Graphics Blog
  • Blog Home Page
    • Logout
    • Log-In
  • Articles
    • IT Security
    • Graphics Design
  • Gajdek Graphics Home
  • Privacy Policy
Select Page
Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks

Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks

by Syndicated News Feed | Jul 21, 2025 | IT Security

Microsoft has released emergency SharePoint security updates for two zero-day vulnerabilities tracked as CVE-2025-53770 and CVE-2025-53771 that have compromised services worldwide in “ToolShell” attacks. In May, during the Berlin Pwn2Own hacking contest,...
Microsoft warns on-prem SharePoint users of a zero-day • The Register

Microsoft warns on-prem SharePoint users of a zero-day • The Register

by Syndicated News Feed | Jul 20, 2025 | IT Security

Infosec In Brief Microsoft has warned users of SharePoint Server that three on-prem versions of the product include a zero-day flaw that is under attack – and that its own failure to completely fix past problems is the cause. In a July 19 security note, the software...
Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

by Syndicated News Feed | Jul 20, 2025 | IT Security

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no patch available and at least 85 servers already compromised worldwide. In May, Viettel Cyber Security researchers...
UK uncovers novel Microsoft snooping malware, blames GRU • The Register

UK uncovers novel Microsoft snooping malware, blames GRU • The Register

by Syndicated News Feed | Jul 20, 2025 | IT Security

The UK government is warning that Russia’s APT28 (also known as Fancy Bear or Forest Blizzard) has been deploying previously unknown malware to harvest Microsoft email credentials and steal access to compromised accounts. Both the UK and the US have previously...
Threat actors downgrade FIDO2 MFA auth in PoisonSeed phishing attack

Threat actors downgrade FIDO2 MFA auth in PoisonSeed phishing attack

by Syndicated News Feed | Jul 19, 2025 | IT Security

A PoisonSeed phishing campaign is bypassing FIDO2 security key protections by abusing the cross-device sign-in feature in WebAuthn to trick users into approving login authentication requests from fake company portals. The PoisonSeed threat actors are known to employ...
Popular npm linter packages hijacked via phishing to drop malware

Popular npm linter packages hijacked via phishing to drop malware

by Syndicated News Feed | Jul 19, 2025 | IT Security

Popular JavaScript libraries were hijacked this week and turned into malware droppers, in a supply chain attack achieved via targeted phishing and credential theft. The npm package eslint-config-prettier, downloaded over 30 million times weekly, was compromised after...
« Older Entries
Next Entries »

Categories

  • Graphics Design (6)
  • IT Security (7,244)

Recent Posts

  • UK to ban public sector orgs from paying ransomware gangs 07/22/2025
  • Dell scoffs at breach, says miscreants stole ‘fake data’ • The Register 07/21/2025
  • Intel announces end of Clear Linux OS project, archives GitHub repos 07/21/2025
  • Another massive security snafu hits Microsoft • The Register 07/21/2025
  • ExpressVPN bug leaked user IPs in Remote Desktop sessions 07/21/2025
©2025 Gajdek Graphics
We employ cookies to guarantee an optimal experience on our website. For additional details, please refer to our privacy policy. By opting to utilize this site, you acknowledge and agree to our policy.