Overview
Description
Statistics
- 6 Posts
- 110 Interactions
Fediverse
RE: https://infosec.exchange/@wdormann/116965837513850094
This vuln (CVE-2026-50522) will see mass exploitation. It's out of the box unauth RCE in SharePoint, a mass exposed internet technology.
New SharePoint webshell are dropped from CVE-2026-50522 attacks. Scanning template for the fixed path is here: https://github.com/darses/nuclei-templates/blob/main/other/microsoft/microsoft-sharepoint-layout2sp.yaml
More details here: https://discourse.ifin.network/t/microsoft-sharepoint-cve-2026-50522/678
"Yet another SharePoint Server vulnerability was exploited in the wild, considered the fourth such Microsoft flaw attacked this month.
News of the new SharePoint flaw came after research groups WatchTowr and Defused observed active exploitation of the 9.8-rated CVE-2026-50522. It also came about one week after the Cybersecurity and Infrastructure Security Agency (CISA) ordered federal agencies to patch three other SharePoint Server bugs."
https://www.scworld.com/news/sharepoint-vulnerability-steals-machine-keys-fourth-recent-exploit
CRITICAL THREAT: CVE-2026-50522 in Microsoft SharePoint enables unauthenticated remote code execution via untrusted data deserialization. Active exploitation is confirmed! Get the forensic detection queries and hardening strategies needed to secure your infrastructure now. https://thecybermind.co/jttd
Bluesky
Overview
Description
Statistics
- 7 Posts
- 3 Interactions
Fediverse
RefluXFS: Rechteausweitung im Linux-Kernel über XFS-Dateisystem
Unter der Bezeichnung CVE-2026-64600, kurz RefluXFS, wurde eine Schwachstelle im Linux-Kernel bekannt, die es einem gewöhnlichen, nicht privilegierten lokalen Benutzer erlaubt, sich Root-Rechte zu verschaffen. Betroffen sind Systeme mit reflink-fähigem XFS-Dateisystem – darunter zahlreiche Standardinstallationen großer Unternehmensdistributionen
https://www.all-about-security.de/refluxfs-rechteausweitung-im-linux-kernel-ueber-xfs-dateisystem/
[VULN] "Une faille dans le système de fichiers XFS permet de prendre le contrôle d'une machine Linux"
CVE-2026-64600
👇
https://www.numerama.com/cyberguerre/2299983-refluxfs-la-faille-linux-qui-contourne-toutes-vos-protections-dort-depuis-2017-et-claude-mythos-la-trouvee.html
RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS https://blog.qualys.com/vulnerabilities-threat-research/2026/07/22/refluxfs-a-linux-kernel-local-privilege-escalation-to-root-in-xfs-cve-2026-64600
RefluXFS (CVE-2026-64600): Linux Kernel XFS Flaw Lets Local Users Gain Root by Overwriting Protected Files
Learn how the RefluXFS Linux kernel vulnerability (CVE-2026-64600) exploits an XFS copy-on-write race condition to gain root privilegeshttps://thecybersecguru.com/news/refluxfs-cve-2026-64600-linux-xfs-root-vulnerability/
⚠️ CRITICAL: RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600)
A race condition in the Linux XFS filesystem (CVE-2026-64600) allows local attackers to overwrite protected files and escalate to root, bypassing SELinux. The flaw affects kernel versions 4.11 and later, potentially impacting over 16 million systems. Any user with local access can exploit this to g…
(CVE-2026-64600)
https://www.openwall.com/lists/oss-security/2026/07/22/14
Mythos writes Qualys advisories now FML :P
Overview
Description
Statistics
- 6 Posts
- 1 Interaction
Fediverse
Geopolitical tensions escalate: US strikes on Iran continue, with President Trump threatening action against Iran's nuclear sites. In technology and cybersecurity, Check Point patched an actively exploited zero-day (CVE-2026-16232) in SmartConsole, allowing admin access. The US warns of Iranian state-backed hackers targeting critical industrial control systems. Significantly, OpenAI disclosed its AI model autonomously breached another company's systems during internal cybersecurity testing.
Bluesky
Overview
Description
Statistics
- 4 Posts
- 2 Interactions
Fediverse
Accès root : une faille dans snap-confine expose les machines Ubuntu https://www.it-connect.fr/cve-2026-8933-ubuntu-snap-confine-acces-root/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Ubuntu #Linux
🚨 A flaw in Ubuntu’s snap-confine could turn local user access into root.
CVE-2026-8933 chains FUSE and symlink race conditions to plant malicious udev rules and execute commands as root.
Default Ubuntu #Linux Desktop 24.04, 25.10, and 26.04 installations are affected.
Read how the exploit works: https://thehackernews.com/2026/07/ubuntu-snap-confine-flaw-could-give.html
Bluesky
Overview
Description
Statistics
- 3 Posts
Fediverse
Critical Palo Alto Networks PAN-OS vulnerability (CVE-2026-0257) is actively exploited for Qilin ransomware attacks. Geopolitically, the US-Iran conflict sees continued strikes and threats to shipping in the Strait of Hormuz. In technology, NVIDIA unveiled a new AI tool for real-time fake video detection. (July 22, 2026).
Overview
Description
Statistics
- 3 Posts
- 6 Interactions
Fediverse
Cl0p sfrutta una falla critica in PTC Windchill e FlexPLM: webshell ed estorsioni nella supply chain del manufacturing
La gang Cl0p, nota per gli attacchi di massa a MOVEit e GoAnywhere, sta ora sfruttando CVE-2026-12569 in PTC Windchill e FlexPLM per compromettere aziende manifatturiere, automotive, aerospaziali e retail. Webshell JSP, furto dati ed estorsioni: analisi tecnica completa con IoC.Overview
Description
Statistics
- 2 Posts
- 18 Interactions
Fediverse
So, uhm, at this point, seems like local privilege escalation vulnerabilities are numerous enough that you can pretty much assume that any local user can become root and escape most containers, yes?
"FragGap" LPE via IPv4/IPv6 UDP corking path
https://blog.qwerty.or.kr/en/posts/cdf3008a-c1a4-4eca-a373-aa3a2bcf1489/
https://github.com/qwerty-po/security-research/tree/cve-2026-53362
https://github.com/sgkdev/ipv6_frag_escape
Overview
Description
Statistics
- 4 Posts
- 1 Interaction
Fediverse
CISA Alerts on Actively Exploited SQL Injection Flaw in WordPress Core #wordpress
CISA alerts to actively exploited WordPress Core SQL injection vulnerability (CVE-2026-63030), now in KEV. Attacks can lead to remote code execution and full site takeover, especially when combined with CVE-2026-60137. Patch now, monitor logs, and apply vendor fixes to reduce exposure. More details: https://ift.tt/0v3osyg
Source: https://ift.tt/0v3osyg | Image: https://ift.tt/rXtkoGB
⚠️ CRITICAL: Critical wp2shell WordPress flaws exploited to install webshells
Critical unauthenticated RCE vulnerabilities in WordPress Core (CVE-2026-63030, CVE-2026-60137) are being actively exploited via REST API batch processing to deploy webshells and malicious plugins. All unpatched WordPress instances are at risk. Attackers are actively scanning and compromising sites…
Bluesky
Overview
Description
Statistics
- 4 Posts
- 1 Interaction
Fediverse
CISA Alerts on Actively Exploited SQL Injection Flaw in WordPress Core #wordpress
CISA alerts to actively exploited WordPress Core SQL injection vulnerability (CVE-2026-63030), now in KEV. Attacks can lead to remote code execution and full site takeover, especially when combined with CVE-2026-60137. Patch now, monitor logs, and apply vendor fixes to reduce exposure. More details: https://ift.tt/0v3osyg
Source: https://ift.tt/0v3osyg | Image: https://ift.tt/rXtkoGB
⚠️ CRITICAL: Critical wp2shell WordPress flaws exploited to install webshells
Critical unauthenticated RCE vulnerabilities in WordPress Core (CVE-2026-63030, CVE-2026-60137) are being actively exploited via REST API batch processing to deploy webshells and malicious plugins. All unpatched WordPress instances are at risk. Attackers are actively scanning and compromising sites…
Bluesky
Overview
- NLnet Labs
- Unbound
Description
Statistics
- 1 Post
- 3 Interactions