Announcements

JetBrains TeamCity: JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

  • 6th August 2026
A security vulnerability has been identified in JetBrains TeamCity, a tool commonly used by development teams to manage software and website build and deployment workflows. The flaw stems from the tool improperly handling untrusted data it receives via its agent polling protocol, the process TeamCity uses to coordinate work with connected worker ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 6th August 2026
On July 20, 2026, a security advisory was published addressing new exploitation activity targeting Microsoft SharePoint, with guidance on recommended hardening steps for the platform. This alert is relevant to clients who run Microsoft SharePoint instances on our hosting, as these active exploitation attempts could pose a risk to unsecured ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 6th August 2026
A security advisory was published on 22 July 2026 detailing a vulnerability in Microsoft Active Directory Federation Services (AD FS), a tool used to manage user access to websites, applications, and other resources. The flaw stems from the service’s access controls not being set to a fine enough level, meaning permission rules may not restrict ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 6th August 2026
On July 22, 2026, Malaysia’s national cybersecurity agency MyCERT issued an advisory for a vulnerability affecting Microsoft SharePoint Server. The flaw is categorized as a missing authentication for critical function issue, meaning a core protected feature of the software fails to properly verify that a user attempting to access it has valid ...
Continue reading