Topic: toolshell campaign

  • Chinese Hackers Exploit Critical SharePoint 'ToolShell' Flaws

    Chinese Hackers Exploit Critical SharePoint 'ToolShell' Flaws

    Chinese-linked hacking groups (Linen Typhoon, Violet Typhoon, Storm-2603) are exploiting critical Microsoft SharePoint vulnerabilities (CVE-2025-53770, CVE-2025-53771) to steal data or deploy ransomware. Linen Typhoon targets government and defense sectors, while Violet Typhoon focuses on intelle...

    Read More »
  • Phishing regains top spot as attackers test AI tools

    Phishing regains top spot as attackers test AI tools

    Phishing regained its position as the top initial access method in Q1 2026, accounting for over a third of engagements, following a decline in public-facing application attacks that peaked at 62% in Q2 2025 due to the ToolShell SharePoint exploitation wave. AI-powered phishing emerged as a notabl...

    Read More »