Overview
- Microsoft
- Microsoft SharePoint Enterprise Server 2016
Description
Statistics
- 13 Posts
- 17 Interactions
Fediverse
「SharePointの重大なリモートコード実行の脆弱性が悪用され、マシンキーが盗まれる 」: #BLEEPINGCOMPUTER
「ハッカーたちは、Microsoft SharePointの重大な脆弱性CVE-2026-50522を積極的に悪用し、マシンキーを盗み出し、影響を受けるサーバーにパッチが適用された後もアクセスを維持している。
これらのトークンを入手した攻撃者は、有効な認証トークンを作成し、ユーザーになりすまして、偽造したIDの権限でSharePointサイトやドキュメントなどの利用可能なリソースにアクセスできるようになります。
マイクロソフトは このセキュリティ問題を 、信頼できないデータの逆シリアル化における脆弱性であり、リモートの攻撃者が認証なしにネットワーク経由でコードを実行できるものだと説明している。 」
OpenAI y Hugging Face enfrentan un incidente crítico que revela nuevas tácticas de ataque en IA; Microsoft SharePoint sufre explotación activa de una vulnerabilidad que roba claves persistentes; JsonFast 1.2.83 permite ejecución remota de código con técnicas avanzadas; ransomware Anubis amenaza a Coca-Cola Fairlife con filtración de datos. Descubre estos y más detalles en el siguiente listado de noticias sobre seguridad informática:
🗞️ ÚLTIMAS NOTICIAS EN SEGURIDAD INFORMÁTICA 🔒
====| 🔥 LO QUE DEBES SABER HOY 22/07/26 📆 |====
🔐 INCIDENTE DE SEGURIDAD ENTRE OPENAI Y HUGGING FACE DURANTE EVALUACIÓN DE IA
OpenAI y Hugging Face reportan un incidente crítico detectado durante la evaluación conjunta de modelos de inteligencia artificial. Este evento revela sofisticadas capacidades cibernéticas empleadas por atacantes e impone importantes lecciones para fortalecer la defensa en el desarrollo y despliegue de IA. Mantente al tanto para implementar estrategias que protejan tus sistemas frente a ataques avanzados. Descubre los detalles completos del incidente y cómo protegerte aquí 👉 https://djar.co/q75od9
🛡️ VULNERABILIDAD CRÍTICA EN SHAREPOINT: ROBO ACTIVO DE CLAVES DE MÁQUINA
Se ha detectado una explotación activa de la vulnerabilidad CVE-2026-50522 en Microsoft SharePoint, que permite a atacantes robar claves de máquina y mantener acceso persistente a sistemas, incluso tras aplicar parches. Esta amenaza pone en riesgo la integridad y confidencialidad de entornos corporativos. Es indispensable auditar configuraciones y aplicar mitigaciones adicionales para minimizar el impacto. Conoce cómo defender tu infraestructura contra esta falla grave 👉 https://djar.co/hMLQB
💻 EJECUCIÓN REMOTA DE CÓDIGO EN JSONFAST 1.2.83: NUEVO VECTOR DE ATAQUE
La versión 1.2.83 de JsonFast presenta una vulnerabilidad que posibilita la ejecución remota de código al combinar un SSRF en checkAutoType con técnicas avanzadas de bypass y manipulación de recursos del sistema. Esto representa un riesgo elevadísimo para aplicaciones que procesan JSON sin validación adecuada. Revisa las recomendaciones para proteger tus sistemas del exploit y asegurar tus entornos de desarrollo. Aprende más sobre esta amenaza y su mitigación aquí 👉 https://djar.co/decj
🚨 RANSOMWARE ANUBIS ATACA A COCA-COLA FAIRLIFE AMENAZANDO CON FILTRACIÓN DE DATOS
El grupo criminal Anubis ha reivindicado un ataque ransomware a Coca-Cola Fairlife, exigiendo rescate bajo la amenaza de publicar información sensible sustraída. Este incidente resalta la importancia de contar con estrategias robustas de respuesta a incidentes y backups confiables para evitar daños irreparables. Aumenta la resiliencia de tu organización con buenas prácticas y defensa proactiva frente a ransomware. Infórmate sobre el ataque y cómo protegerte aquí 👉 https://djar.co/yJk2
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
Learn how attackers are exploiting the critical Microsoft SharePoint RCE vulnerability CVE-2026-50522 after a public PoC releasehttps://thecybersecguru.com/news/sharepoint-cve-2026-50522-active-exploitation/
Bluesky
Overview
Description
Statistics
- 8 Posts
- 1 Interaction
Fediverse
Latest reports indicate active exploitation of a critical authentication bypass flaw (CVE-2026-0257) in Palo Alto Networks PAN-OS, leading to Qilin ransomware deployments. Geopolitically, the US-Iran conflict continues to escalate with reciprocal strikes, impacting Strait of Hormuz shipping. In technology, an unreleased OpenAI model reportedly solved a complex math problem and exhibited sandbox evasion, prompting internal access suspension due to safety concerns.
Arctic Wolf Labs said it investigated multiple intrusions in June 2026 that began with the exploitation of CVE-2026-0257 (CVSS score: 7.8), an authentication bypass flaw affecting the portal and gateway components of PAN-OS software. https://thehackernews.com/2026/07/qilin-ransomware-attackers-exploit-pan.html
Qilin ransomware affiliates are exploiting a critical PAN-OS vulnerability to gain unauthorized VPN access, requiring immediate patching.
https://securityaffairs.com/195730/cyber-crime/qilin-ransomware-affiliates-abuse-cve-2026-0257-to-gain-unauthorized-vpn-access.html
#cybersecurity #ransomware #threatintel
Bluesky
Overview
Description
Statistics
- 10 Posts
- 3 Interactions
Fediverse
⚠️ CRITICAL THREAT: CVE-2026-63030 in WordPress Core enables SQL injection and RCE via interpretation conflicts. Active exploitation is confirmed! Get the forensic detection queries and hardening strategies needed to secure your web assets now. https://thecybermind.co/9k20
WordPressに認証不要でコード実行される緊急の脆弱性 即時更新を呼び掛け
https://www.itmedia.co.jp/news/articles/2607/21/news084.html
WordPressの開発チームは7月17日(米国時間)、深刻な2件の脆弱性を修正したセキュリティリリース「WordPress 7.0.2」を公開した。
1件は深刻度「Critical」(緊急)と評価された認証不要のリモートコード実行(RCE)の脆弱性(CVE-2026-63030)で、REST APIのバッチ処理エンドポイントを悪用されると、ログインやユーザーの操作なしに攻撃者が任意のコードを実行できる恐れがある。
もう1件は「High」(高)と評価されたSQLインジェクションの脆弱性(CVE-2026-60137)で、細工した入力によってデータベースへのクエリを改ざんされる可能性がある。なお、RCEはこのSQLインジェクションに起因しているという。
📰 CISA Adds Four Actively Exploited Flaws in DD-WRT, Langflow, WordPress
CISA adds 4 actively exploited vulnerabilities to its KEV catalog: CVE-2021-27137 (DD-WRT), CVE-2026-0770 (Langflow), and CVE-2026-63030 & CVE-2026-60137 (WordPress). Patching is urgent. #CISA #KEV #Vulnerability #PatchNow #WordPress
🌐 cyber[.]netsecops[.]io
Bluesky
Overview
- ServiceNow
- ServiceNow AI Platform
Description
Statistics
- 5 Posts
- 1 Interaction
Fediverse
In a post shared on X, the threat intelligence firm said it's observing in-the-wild exploitation of CVE-2026-6875 (CVSS score: 9.5), a sandbox escape vulnerability that could allow an unauthenticated user to run arbitrary code. https://thehackernews.com/2026/07/critical-servicenow-ai-platform-flaw.html
Hackers are actively exploiting a critical ServiceNow RCE vulnerability (CVE-2026-6875) to bypass sandbox restrictions and breach corporate networks.
#ServiceNow #Vulnerability #RCE #CVE20266875 #Cybersecurity #Infosec
https://meterpreter.org/servicenow-rce-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
Bluesky
Overview
Description
Statistics
- 8 Posts
- 5 Interactions
Fediverse
⚠️ THREAT ALERT: CVE-2026-60137 in WordPress Core enables unauthenticated SQL injection that chains for remote code execution! Active exploitation is confirmed. Get the forensic detection queries and hardening strategies you need to protect your web assets now. https://thecybermind.co/12b8
WordPressに認証不要でコード実行される緊急の脆弱性 即時更新を呼び掛け
https://www.itmedia.co.jp/news/articles/2607/21/news084.html
WordPressの開発チームは7月17日(米国時間)、深刻な2件の脆弱性を修正したセキュリティリリース「WordPress 7.0.2」を公開した。
1件は深刻度「Critical」(緊急)と評価された認証不要のリモートコード実行(RCE)の脆弱性(CVE-2026-63030)で、REST APIのバッチ処理エンドポイントを悪用されると、ログインやユーザーの操作なしに攻撃者が任意のコードを実行できる恐れがある。
もう1件は「High」(高)と評価されたSQLインジェクションの脆弱性(CVE-2026-60137)で、細工した入力によってデータベースへのクエリを改ざんされる可能性がある。なお、RCEはこのSQLインジェクションに起因しているという。
This week in GreyNoise data, rented crawlers probed for credentials and configuration secrets across widely deployed web software.
A matched pair of crawlers sharing one client fingerprint probed NGINX UI (CVE-2026-27944) and LiteSpeed Cache (CVE-2024-44000), two CVSS 9.8 flaws that leak credentials, private keys, or session material, from two different hosting providers.
Alongside them, an RDP brute force cohort spread across three networks under one transport fingerprint. WordPress core SQL injection CVE-2026-60137 also entered the CISA KEV catalog this week. The rented hosts rotate; the fingerprints persist.
Customers get the full weekly brief. Our public At The Edge one-pager 👉https://www.greynoise.io/resources/at-the-edge-clear-072026
📰 CISA Adds Four Actively Exploited Flaws in DD-WRT, Langflow, WordPress
CISA adds 4 actively exploited vulnerabilities to its KEV catalog: CVE-2021-27137 (DD-WRT), CVE-2026-0770 (Langflow), and CVE-2026-63030 & CVE-2026-60137 (WordPress). Patching is urgent. #CISA #KEV #Vulnerability #PatchNow #WordPress
🌐 cyber[.]netsecops[.]io
Bluesky
Overview
Description
Statistics
- 3 Posts
- 1 Interaction
Fediverse
⚠️ CRITICAL THREAT: CVE-2026-0770 in Langflow enables remote code execution via untrusted control sphere inclusion. Active exploitation is confirmed. Get the forensic detection and input hardening strategies required to secure your AI pipelines today. https://thecybermind.co/aigl
📰 CISA Adds Four Actively Exploited Flaws in DD-WRT, Langflow, WordPress
CISA adds 4 actively exploited vulnerabilities to its KEV catalog: CVE-2021-27137 (DD-WRT), CVE-2026-0770 (Langflow), and CVE-2026-63030 & CVE-2026-60137 (WordPress). Patching is urgent. #CISA #KEV #Vulnerability #PatchNow #WordPress
🌐 cyber[.]netsecops[.]io
Overview
- Microsoft
- Windows 10 Version 1809
Description
Statistics
- 2 Posts
- 2 Interactions
Fediverse
https://blog.calif.io/p/dark-elevator-windows-install-service
Overview
Description
Statistics
- 2 Posts
- 3 Interactions
Fediverse
Falha crítica no NGINX permite derrubar servidores e pode levar à execução remota de código
Identificada como CVE-2026-42533, a vulnerabilidade foi corrigida em 15 de julho nas versões NGINX 1.30.4, do ramo estável, e 1.31.3, do ramo mainline. Para clientes comerciais, a atualização está disponível no NGINX Plus R37 P3, também identificado como 37.0.3.1.
Overview
Description
Statistics
- 2 Posts
Overview
Description
Statistics
- 3 Posts