Topic: active directory reconnaissance

  • Sitecore Zero-Day Exploit Actively Attacked (CVE-2025-53690)

    Sitecore Zero-Day Exploit Actively Attacked (CVE-2025-53690)

    A critical zero-day vulnerability (CVE-2025-53690) in Sitecore on-premises deployments is being actively exploited, allowing unauthorized access and remote code execution. Attackers leverage a known sample ASP.NET machine key to exploit ViewState deserialization, enabling them to deploy malware, ...

    Read More »
  • Hackers Use SolarWinds Flaws to Deploy DFIR Tool in Attacks

    Hackers Use SolarWinds Flaws to Deploy DFIR Tool in Attacks

    Cybersecurity researchers have identified an active campaign exploiting critical vulnerabilities (CVE-2025-40551 and CVE-2025-26399) in SolarWinds Web Help Desk software to gain unauthorized access and deploy legitimate tools for malicious purposes. Attackers establish persistent control by insta...

    Read More »