Announcements

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 17th August 2026
A security advisory released on 22 July 2026 flags a vulnerability in Microsoft Active Directory Federation Services (ADFS), a tool many websites use to manage user logins and control who can access different parts of a site or app. The flaw is described as "insufficient granularity of access control," which means the system's rules for granting ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 17th August 2026
A security advisory was published on July 22, 2026, identifying a vulnerability in Microsoft SharePoint Server. The flaw is classified as a missing authentication for critical function issue, which means a key protected feature of the server does not require users to verify they have authorized access before using it. Unapproved individuals could ...
Continue reading

MA-1474.072026: MyCERT Advisory - Critical Vulnerability in Zoom Products

  • 17th August 2026
On July 22, 2026, Malaysia’s national cybersecurity agency (MyCERT) published advisory MA-1474.072026 confirming a critical security vulnerability exists in Zoom’s product lineup. If you use Zoom for work activities connected to your website—including client calls, team meetings, hosted webinars, or embedded Zoom tools on your site—this ...
Continue reading

MA-1475.072026: MyCERT Advisory - Oracle E-Business Suite Improper Privilege Management Vulnerability

  • 17th August 2026
Advisory MA-1475.072026 from MyCERT was published on 22 July 2026, covering an improper privilege management vulnerability in Oracle E-Business Suite. Improper privilege management means the software may not correctly enforce rules about which users can access specific features, settings, or sensitive data. If your website or business operations ...
Continue reading