Microsoft News Articles
Recent news articles refferecing the vendors vulnerabilities.
Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released - Help Net Security
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Nono: Open-source sandbox for AI agents AI coding agents
2 days ago
CTO at NCSC Summary: week ending August 2nd
A highly disruptive incident can feel overwhelming. New guidance provides a framework for response and recovery...
3 days ago
SharePoint zero-day grants Farm Admin rights, CISA warns
CISA warns of active exploitation targeting on-premises SharePoint Server, with attackers stealing IIS machine keys to survive patching. See which CVEs are confirmed exploited and how to respond.
4 days ago
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
Russian hackers exploit CVE-2026-42897 in OWA to deploy OWAReaper, a browser implant that persists through credential rotation and device re-imaging.
5 days ago
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor called OWAReaper.
6 days ago
PoC exploit released for critical AD CS domain-takeover flaw (CVE-2026-54121) - IT Security News
Security researchers who discovered and reported CVE-2026-54121 (aka “Certighost”), a critical privilege elevation vulnerability in Active Directory Certificate Services (AD CS), have released a proof-of-concept (PoC) exploit for and technical details related to the flaw. The vulnerability AD CS is…...
1 week ago
PoC exploit released for critical AD CS domain-takeover flaw (CVE-2026-54121) - Help Net Security
Security researchers who discovered and reported CVE-2026-54121 (aka "Certighost") in AD CS have released a PoC exploit.
1 week ago
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Swati KhandelwalJul 24, 2026Vulnerability / Enterprise Security
2 weeks ago
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Certighost exploit lets a domain user obtain a Domain Controller certificate and reach DCSync through a vulnerable AD CS chase.
2 weeks ago
Default Azure Automation Setting Enables Cross-Tenant Attacks
A critical Azure Automation bug lets an attacker with a valid account hijack identities and access other tenants' data, credentials, and cloud workloads.
2 weeks ago
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Two Bing image search flaws let crafted SVGs run commands as SYSTEM on Windows workers & root on Linux before Microsoft fixed them server-side.
2 weeks ago
Windows 11 and Server 2025 Exposed to High-Severity Brokering File System Vulnerability
Windows 11 and Server 2025 are affected by a high-severity Brokering File System vulnerability that enables local privilege escalation.
2 weeks ago

Public PoC Released for Windows NT OS Kernel Privilege Escalation Vulnerability
Public PoC exploit code released for a Windows NT OS Kernel local privilege escalation vulnerability caused by an integer underflow in kernel‑mode code.
2 weeks ago

Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522) - IT Security News
Attackers are exploiting a critical SharePoint remote code execution (RCE) vulnerability (CVE-2026-50522) to extract the servers’ IIS machine keys. “WatchTowr is observing active exploitation of CVE-2026-50522 against on-premise Microsoft SharePoint deployments following the release of public exploi...
2 weeks ago
Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522) - Help Net Security
Attackers are exploiting an unauthenticated SharePoint RCE vulnerability (CVE-2026-50522) to extract the servers' IIS machine keys.
2 weeks ago
Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks - IT Security News
CVE-2026-50522 is being exploited by threat actors to steal machine keys and retain long-term access. The post Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the…Read more →
2 weeks ago
Hackers Exploit Critical SharePoint Flaw to Steal Machine Keys
Hackers are exploiting CVE-2026-50522 to breach SharePoint servers, steal machine keys, and forge authentication tokens.
2 weeks ago
Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks
The in-the-wild exploitation of four Microsoft SharePoint vulnerabilities has come to light in the past month.
2 weeks ago
Public PoC triggers active exploitation of critical SharePoint RCE vulnerability CVE-2026-50522 - IT Security News
Critical SharePoint RCE vulnerability CVE-2026-50522 is under active exploitation after the release of a PoC exploit code. A critical Microsoft SharePoint vulnerability, tracked as CVE-2026-50522 (CVSS score of 9.8), is being actively exploited following the release of a public proof-of-concept…Read...
2 weeks ago
Critical SharePoint RCE flaw exploited to steal machine keys
Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after affected servers are patched.
2 weeks ago
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
Ravie LakshmananJul 21, 2026Vulnerability / Web Security
2 weeks ago
Critical SharePoint Remote Code Execution Vulnerability Actively Exploited in the Wild - IT Security News
A newly disclosed vulnerability, tracked as CVE-2026-50522, is rattling enterprise IT teams as it allows unauthenticated attackers to remotely execute code on on-premises Microsoft SharePoint servers. The flaw carries a critical CVSS score of 9.8 and stems from deserialization of…Read more →
2 weeks ago
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC - IT Security News
A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr. The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data…Read more →
2 weeks ago