#sharepoint


Hackers leverage new Microsoft SharePoint exploit in attacks

Aug 12, 2026 // 15:36

A proof-of-concept (PoC) exploit for a critical Microsoft SharePoint vulnerability, published by cybersecurity company Rapid7 on Tuesday, is already being used in attacks. Tracked as […]

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE

Aug 11, 2026 // 20:06

Security researchers found a way to enter Microsoft SharePoint servers as any user, including an administrator, with no valid account. A significant part of the […]

CISA: Microsoft SharePoint flaw now exploited in ransomware attacks

Aug 11, 2026 // 17:37

CISA confirmed today that ransomware gangs have begun abusing a high-severity Microsoft SharePoint remote code execution vulnerability, which has been flagged as actively exploited since […]

Swiss government SharePoint breach compromised 200 accounts

Aug 7, 2026 // 01:17

Switzerland’s federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts. The Federal Office for Information Technology and Telecommunication (BIT) […]

Critical SharePoint RCE flaw exploited to steal machine keys

Jul 21, 2026 // 23:36

Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after affected servers are patched. Microsoft […]

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

Jul 21, 2026 // 18:00

A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr. […]

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

Jul 20, 2026 // 16:38

A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and […]

CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV

Jul 17, 2026 // 11:06

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly patched security flaw impacting Microsoft SharePoint Server to its Known Exploited Vulnerabilities […]

CISA warns admins to patch actively exploited SharePoint flaws

Jul 15, 2026 // 12:56

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned Tuesday that attackers are actively exploiting three vulnerabilities to hack Internet-exposed on-premises SharePoint Server instances. These […]

New Helix vishing group emerges in SharePoint data theft attacks

Jul 9, 2026 // 23:17

A new data-extortion group called Helix is using identity-focused tactics such as voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse to steal […]