The parallel activity of two independent ransomware groups on the same SharePoint servers demonstrates that attackers are increasingly conducting overlapping campaigns, requiring centralized visibility across all layers.
Multiple vulnerabilities in NGINX products compromise availability, integrity, and system security; extensive data manipulation and code execution are possible.
Microsoft 365 Copilot contains multiple remotely exploitable vulnerabilities that allow unauthenticated attackers to perform privilege escalation, command injection, and data access.
VMware Tanzu Spring Framework is affected by multiple vulnerabilities that enable privilege escalation, remote code execution, denial of service, and additional attack scenarios.
Five security vulnerabilities in Microsoft’s OpenClaw framework were disclosed simultaneously with the Scout announcement and require immediate security analysis before enterprise deployments.