„Einem Scan der Shadowserver Foundation zufolge sind weltweit rund 9.300 Sharepoint-Server über das Internet erreichbar. Mehr als 85 dieser Instanzen, die insgesamt 54 Organisationen zugeordnet wurden, sollen bereits kompromittiert sein.“ https://www.golem.de/news/zero-day-luecke-hacker-attackieren-massenhaft-microsoft-sharepoint-instanzen-2507-198299.html /via #golem #microsoft #sharepoint #cve
GCVE.eu initiative - introduction and how to become a GNA. Video published.
#gcve #vulnerabilitymanagement #vulnerability #cve #cybersecurity
If you're hunting for #CVE-2025-53770 then I'd recommend also looking for connections to *.ngrok-free.app as it's used to distribute PowerShell reverse shell.
ESET Inspect rule Potential SharePoint Post-Exploitation (Cmd/PowerShell) [E0474] is triggered on all exploitation attempts seen so far.
@bluetea Also, here is the release:
Customer guidance for SharePoint vulnerability CVE-2025-53770
https://msrc.microsoft.com/blog/2025/07/customer-guidance-for-sharepoint-vulnerability-cve-2025-53770/
https://archive.ph/Dlhra #SharePoint #CVE #Hack #ZeroDay #InfoSec
Don't forget to join us today online at 14:00 (Luxembourg local time) for "GCVE.eu initiative - introduction and how to become a GNA" part of the @circl Virtual Summer School (VSS) 2025
Details available at: https://circl.lu/pub/vss-2025/
As of 15 July 2025, the TYPO3 Association is approved as a CVE Numbering Authority (CNA) by the CVE Program.
The TYPO3 Security Team can now assign CVE Identifiers for vulnerabilities in TYPO3 CMS and its ecosystem. This ensures TYPO3 security issues are disclosed in a coordinated and consistent way.
Learn more: https://t3.ms/cve-bm
Unbound 1.23.1 in now available. This security release fixes the Rebirthday Attack CVE-2025-5994.
The vulnerability re-opens up #DNS resolvers to a birthday paradox, for EDNS client subnet servers that respond with non-ECS answers. The #CVE is described here:
https://nlnetlabs.nl/downloads/unbound/CVE-2025-5994.txt
We would like to thank Xiang Li (AOSP Lab, Nankai University) for discovering and responsibly disclosing the vulnerability.
https://github.com/NLnetLabs/unbound/releases/tag/release-1.23.1
Minutes from the CVE Board teleconference meeting on June 25 are now available
https://www.mail-archive.com/cve-editorial-board-list@mitre.org/msg00277.html
#cve #vulnerability #vulnerabilitymanagement #hssedi #cisa #infosec #cybersecurity
Just published a proof-of-concept exploit for CVE-2025-32463, a new Linux privilege escalation vulnerability affecting sudo discovered and disclosed by Stratascale about 2 weeks ago.
The PoC is available on GitHub. A full technical writeup will be published on my blog soon.
GitHub: https://github.com/morgenm/sudo-chroot-CVE-2025-32463
EU startet eigene #Vulnerability Database um sich von eigenständiger aufzustellen. Ein guter Schritt in die richtige Richtung, um sich unabhängig von manipulierten Datenbanken anderer Länder wie USA und China zu machen. Denn dort findet man u.U. nicht alles. So werden möglicherweise Schwachstellen - die Geheimdienste nutzen könnten - nicht veröffentlicht.
#enisa #cve #vulnerabilitymanagement #vulnerabilitylookup #eu #sicherheit #sicherheitslucke #cybersecurity
Microsoft Patch Tuesday, July 2025 Edition - Microsoft today released updates to fix at least 137 security vulnerabilities in i... https://krebsonsecurity.com/2025/07/microsoft-patch-tuesday-july-2025-edition/ #microsoftpatchtuesdayjuly2025edition #microsoftconfigurationmanager #microsoftdefendersmartscreen #latestwarnings #cve-2025-47178 #cve-2025-47981 #cve-2025-49695 #cve-2025-49696 #cve-2025-49697 #cve-2025-49702 #cve-2025-49719 #cve-2025-49740 #securitytools #immersivelabs #action1
I do not consent to be used by, used for, or interact in any way with AI.
Reason number 163.327.205:
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2025-32711
Somehow I missed this CVE when it came out in 2022.
I think it's called a Jackson-in-the-Middle attack.
Certain 5400 RPM hard drives, ... allow physically proximate attackers to cause a ... device malfunction ... via a resonant-frequency attack with the audio signal from the Rhythm Nation music video.
I like that CVE links to a YouTube video where someone tried to reproduce it.