Topic: toolshell campaign
-
Chinese Hackers Exploit Critical SharePoint 'ToolShell' Flaws
Chinese-linked hacking groups (Linen Typhoon, Violet Typhoon, Storm-2603) are exploiting critical Microsoft SharePoint vulnerabilities (CVE-2025-53770, CVE-2025-53771) to steal data or deploy ransomware. Linen Typhoon targets government and defense sectors, while Violet Typhoon focuses on intelle...
Read More » -
Phishing regains top spot as attackers test AI tools
Phishing regained its position as the top initial access method in Q1 2026, accounting for over a third of engagements, following a decline in public-facing application attacks that peaked at 62% in Q2 2025 due to the ToolShell SharePoint exploitation wave. AI-powered phishing emerged as a notabl...
Read More »