A security flaw has been identified in Broadcom VMware vCenter, a tool used to manage virtualized server infrastructure.This is a path traversal vulnerability, a type of flaw that lets an attacker access restricted parts of a system they should not be able to reach. If a threat actor has network access to an affected vCenter instance, they could ...
Continue reading
A security vulnerability has been identified in Microsoft’s Internet Key Exchange (IKE) Service Extensions, a software component used to set up and manage secure network connections such as VPNs.This flaw is classified as a "double free" bug, a type of programming error that can be triggered remotely by outside users without direct access to the ...
Continue reading
A cybersecurity advisory has been issued alerting users to new exploitation methods targeting Microsoft SharePoint, a widely used platform for team collaboration, file sharing, and internal business workflows. These new attack techniques mean unsecured SharePoint deployments are at higher risk of being compromised by bad actors.If you use ...
Continue reading
On July 22, 2026, MyCERT released a security advisory for a vulnerability affecting Microsoft Active Directory Federation Services (AD FS), a tool many organizations use to control access to their websites, apps, and other digital services.
The issue is categorized as insufficient granularity of access control. This means the system’s built-in ...
Continue reading