Announcements

Microsoft Internet Key Exchange (IKE) Service Extensions: Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability

  • 19th August 2026
A security flaw has been identified in Microsoft's Internet Key Exchange (IKE) Service Extensions, a component used to create and manage secure, encrypted network connections for Windows systems and the services that run on them. This specific issue is a double free vulnerability. This type of error occurs when software accidentally attempts to ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 19th August 2026
On July 20, 2026, advisory group MyCERT released a public security notice related to Microsoft SharePoint, a widely used tool for business document storage, team collaboration, and internal workflows. The notice states that new methods for exploiting improperly secured SharePoint systems have been identified recently, and recommends all ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 19th August 2026
On July 22, 2026, cybersecurity agency MyCERT released an advisory for a security vulnerability in Microsoft Active Directory Federation Services (ADFS), a tool many businesses use to manage secure access to their websites, apps, and internal resources for employees and approved users. The vulnerability is caused by overly broad access controls ...
Continue reading