Latest Security News
Security Updates
Latest security news and articles covering recent vulnerabilities and their impacts.
Metasploit Module Released for Actively Exploited Microsoft SharePoint Flaw CVE-2025-53770
2025-07-23 15:32
SecurityOnline.info
1 CVE
The post Metasploit Module Released for Actively Exploited Microsoft SharePoint Flaw CVE-2025-53770 appeared first on Daily CyberSecurity.
Cisco confirms active exploitation of ISE and ISE-PIC flaws
2025-07-22 19:52
Securityaffairs.com
2 CVEs
Cisco warns of active exploits targeting Identity Services Engine (ISE) and ISE-PIC flaws, first observed in July 2025. Cisco confirmed attempted exploitation in the wild of recently disclosed ISE and ISE-PIC flaws (CVE-2025-20281, CVE-2025-20282, CVE-2025-20…
Cloudflare protects against critical SharePoint vulnerability, CVE-2025-53770
2025-07-22 16:30
Cloudflare.com
2 CVEs
Microsoft disclosed two critical vulnerabilities, CVE-2025-53771 and CVE-2025-53770, that are exploited to attack SharePoint servers. Possession of these cryptographic machine keys allows an attacker to forge authentication tokens and maintain access even if …
Google, Microsoft say Chinese hackers are exploiting SharePoint zero-day
2025-07-22 16:14
Biztoc.com
1 CVE
Security researchers at Google and Microsoft say they have evidence that hackers backed by China are exploiting a zero-day bug in Microsoft SharePoint, as companies around the world scramble to patch the flaw. The bug, known officially as CVE-2025-53770 and d…
SharePoint under fire: new ToolShell attacks target enterprises
2025-07-22 16:12
Securityaffairs.com
1 CVE
While SentinelOne did not attribute the attack to a specific threat actor, The Washington Post linked it to China-nexus acors. On July 19, Microsoft confirmed active exploitation of a zero-day vulnerability, tracked as CVE-2025-53770 in on-prem SharePoint Ser…
Hackers Exploit Microsoft SharePoint Flaws in Global Breaches
2025-07-22 13:08
HackRead
1 CVE
Hackers are exploiting critical SharePoint flaws (CVE-2025-53770/53771) to breach global targets, including governments and corporations. Microsoft urges immediate action. Learn about the active attacks and how to protect your network from credential theft an…
CISA Adds Four Known Exploited Vulnerabilities to Catalog
2025-07-22 12:00
Cisa.gov
2 CVEs
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-54309 CrushFTP Unprotected Alternate Channel Vulnerability CVE-2025-6558 Google Chromium ANGLE a…
CISA Adds Two Known Exploited Vulnerabilities to Catalog
2025-07-22 12:00
Cisa.gov
2 CVEs
CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-49704 Microsoft SharePoint Code Injection Vulnerability CVE-2025-49706 Microsoft SharePoint Impro…
CrushFTP zero-day actively exploited at least since July 18
2025-07-22 10:31
Securityaffairs.com
1 CVE
Hackers exploit CrushFTP zero-day, tracked as CVE-2025-54309, to gain admin access via HTTPS when DMZ proxy is off. Threat actors are exploiting a zero-day vulnerability, tracked as CVE-2025-54309 (CVSS score of 9.0), in the managed file transfer software Cru…
CVE-2025-53770: Zero-Day Exploit Impacts Microsoft SharePoint Services
2025-07-21 23:14
Zscaler.com
1 CVE
IntroductionOn July 19, 2025, Microsoft published an advisory for CVE-2025-53770, a critical zero-day vulnerability that allows unauthenticated attackers to execute arbitrary code impacting on-premises SharePoint servers. The vulnerability, dubbed ToolShell, …
Proactive Security and Insights for SharePoint Attacks (CVE-2025-53770 and CVE-2025-53771)
2025-07-21 23:08
Trendmicro.com
2 CVEs
CVE-2025-53770 and CVE-2025-53771 are vulnerabilities in on-premise Microsoft SharePoint Servers that evolved from previously patched flaws, allowing unauthenticated remote code execution through advanced deserialization and ViewState abuse.
ToolShell: Details of CVEs Affecting SharePoint Servers
2025-07-21 20:33
Talosintelligence.com
2 CVEs
Cisco Talos is aware of the ongoing exploitation of CVE-2025-53770 and CVE-2025-53771 in the wild. These are path traversal vulnerabilities affecting SharePoint Server Subscription Edition, SharePoint Server 2016, and SharePoint Server 2019.
Microsoft Releases Emergency Patches for Actively Exploited SharePoint Zero-Days
2025-07-21 15:23
Slashdot.org
2 CVEs
Microsoft has released emergency security updates for two actively exploited zero-day vulnerabilities in SharePoint, tracked as CVE-2025-53770 and CVE-2025-53771, that have compromised servers worldwide in what researchers call "ToolShell" attacks. The U.S. C…
菴処
2025-07-21 15:00
Ryukoku.ac.jp
4 CVEs
2025 綛7 禹礇絅磧彜羂 (2025.07.10) d信罩c Sharepoint CVE-2025-49704 CVE-2025-49706 Pwn2Own ㏍сToolShell 違ToolShell 荐眼 CVE-2025-53770 CVE-2025-53771 違 Sharepoint (⒢ケ 紙с Customer guidance for SharePoint vulnerability CVE-2025-53770 (Microsoft, 2025.07.19…
New CrushFTP Critical Vulnerability Exploited in the Wild
2025-07-21 13:00
Infosecurity Magazine
1 CVE
CVE-2025-54309 could allow remote attackers to obtain admin access via HTTPS
Critical CrushFTP vulnerability exploited. Have you been targeted? (CVE-2025-54309)
2025-07-21 12:02
Help Net Security
1 CVE
Unknown attackers have exploited a vulnerability (CVE-2025‑54309) in the CrushFTP enterprise file-transfer server solution to gain administrative access to vulnerable deployments. It’s currently unclear what the attackers are using this access for, but data t…
GreenboneOS: CVE-2025-25257: Urgent Pre-Auth RCE in FortiWeb Fabric Connector
2025-07-21 11:21
Greenbone.net
1 CVE
A fresh vulnerability, CVE-2025-25257 (CVSS 9.6) in Fortinet’s FortiWeb Fabric Connector presents high risk globally. Although the CVE is still only in RESERVED status as of July 14th, 2025, it has already received a national CERT advisory from Belgium’s CERT…
Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks
2025-07-21 11:14
Securityaffairs.com
2 CVEs
Microsoft patched an exploited SharePoint flaw (CVE-2025-53770) and disclosed a new one, warning of ongoing attacks on on-prem servers. Microsoft released emergency SharePoint updates for two zero-day flaws, tracked as CVE-2025-53770 and CVE-2025-53771, explo…
SharePoint zero-day CVE-2025-53770 actively exploited in the wild
2025-07-21 07:27
Securityaffairs.com
1 CVE
Microsoft warns of ongoing active exploitation of a SharePoint zero-day vulnerability, tracked as CVE-2025-53770. Microsoft warns of a SharePoint zero-day vulnerability, tracked as CVE-2025-53770 (CVSS score of 9.8), which is under active exploitation. Unfort…
Hackers actively exploiting unpatched Microsoft SharePoint vulnerability CVE-2025-53770
2025-07-21 04:44
Neowin
1 CVE
A new critical vulnerability, CVE-2025-53770 (ToolShell), is being actively exploited to attack unpatched on-premises Microsoft SharePoint Servers. Read more...