Tag Trend Micro

Severe Unpatched SharePoint Zero-Day Under Active Exploitation, Compromises Over 75 Company Servers

July 20, 2025
Zero-Day / Vulnerability

A serious security flaw in Microsoft SharePoint Server has been weaponized in an ongoing, large-scale exploitation campaign. The zero-day vulnerability, identified as CVE-2025-53770 (CVSS score: 9.8), is a variant of CVE-2025-49704 (CVSS score: 8.8), which was addressed by Microsoft in their July 2025 Patch Tuesday updates. Microsoft explained that “deserialization of untrusted data in on-premises Microsoft SharePoint Server enables unauthorized attackers to execute code over a network,” as detailed in an advisory released on July 19, 2025. The company is actively preparing a comprehensive update to mitigate this issue. Viettel Cyber Security is credited with discovering and reporting the flaw through Trend Micro’s Zero Day Initiative (ZDI). Additionally, Microsoft has acknowledged awareness of ongoing attacks related to this vulnerability.

Critical Unpatched SharePoint Zero-Day Under Active Exploitation, Compromises Over 75 Company Servers July 20, 2025 In an alarming development, a critical zero-day vulnerability in Microsoft SharePoint Server has been actively exploited in a large-scale attack campaign, leading to the breach of more than 75 company servers. This vulnerability, designated as…

Read More

Severe Unpatched SharePoint Zero-Day Under Active Exploitation, Compromises Over 75 Company Servers

July 20, 2025
Zero-Day / Vulnerability

A serious security flaw in Microsoft SharePoint Server has been weaponized in an ongoing, large-scale exploitation campaign. The zero-day vulnerability, identified as CVE-2025-53770 (CVSS score: 9.8), is a variant of CVE-2025-49704 (CVSS score: 8.8), which was addressed by Microsoft in their July 2025 Patch Tuesday updates. Microsoft explained that “deserialization of untrusted data in on-premises Microsoft SharePoint Server enables unauthorized attackers to execute code over a network,” as detailed in an advisory released on July 19, 2025. The company is actively preparing a comprehensive update to mitigate this issue. Viettel Cyber Security is credited with discovering and reporting the flaw through Trend Micro’s Zero Day Initiative (ZDI). Additionally, Microsoft has acknowledged awareness of ongoing attacks related to this vulnerability.

Admin of Suspected XSS Cybercrime Forum Taken into Custody

Cybercrime, Fraud Management & Cybercrime, Incident & Breach Response Also: Clorox Suing IT Vendor Over Password Incident Anviksha More (@AnvikshaMore) • July 24, 2025 Image: Shutterstock/ISMG Information Security Media Group provides a weekly summary of cyber incidents globally. This week, authorities arrested the suspected admin of the XSS cybercrime forum…

Read MoreAdmin of Suspected XSS Cybercrime Forum Taken into Custody

SentinelOne Reports No Breach Following Hardware Supplier Cyberattack

Third-Party Risk Management, Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Intrusion Linked to ShadowPad Malware Used by Chinese APT Groups Mathew J. Schwartz (@euroinfosec) • June 9, 2025 Image: Michael Vi/Shutterstock SentinelOne, a prominent cybersecurity firm, reported a suspected intrusion by Chinese cyber attackers targeting a logistics company that…

Read MoreSentinelOne Reports No Breach Following Hardware Supplier Cyberattack

WatchGuard Appoints Former SentinelOne COO Srivatsan as Interim CEO

Endpoint Security, Governance & Risk Management, Managed Security Service Provider (MSSP) Vats Srivatsan Appointed Interim CEO at WatchGuard Following Prakash Panjwani’s Departure Michael Novinson (@MichaelNovinson) • May 8, 2025 Vats Srivatsan, interim CEO of WatchGuard (Image: WatchGuard) Vats Srivatsan, the former Chief Operating Officer of SentinelOne, has been appointed as…

Read MoreWatchGuard Appoints Former SentinelOne COO Srivatsan as Interim CEO

North Korean Hackers Leverage Russian IP Infrastructure

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime, Social Engineering Void Dokkaebi Campaigns Exploit Russian Infrastructure for Cryptocurrency Theft Prajeet Nair (@prajeetspeaks) • April 24, 2025 The Korea–Russia Friendship Bridge over the Tumen River, captured on August 10, 2017. (Image: Stefan Bruder / Shutterstock) North Korean hackers are increasingly leveraging…

Read MoreNorth Korean Hackers Leverage Russian IP Infrastructure