Announcements

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 27th July 2026
On July 22, 2026, a security advisory was released for a vulnerability in Microsoft Active Directory Federation Services (AD FS), a tool commonly used to manage user sign-ins and control access to websites, applications and other digital resources. The flaw stems from access control settings that lack sufficient specificity, which could allow ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 27th July 2026
A security flaw has been identified in Microsoft SharePoint Server, where a key critical function on the server does not require proper authentication to access. This means an unauthorized person could interact with that function without needing a valid login for your SharePoint site.For hosting clients using SharePoint to run your websites, this ...
Continue reading

MA-1474.072026: MyCERT Advisory - Critical Vulnerability in Zoom Products

  • 27th July 2026
A critical security advisory for Zoom products was published by Malaysia’s cybersecurity agency MyCERT on 22 July 2026. For website owners who use Zoom for customer support, team meetings, or embedded meeting features on their sites, this notice flags a potential risk in a common business tool many operations rely on.Critical vulnerabilities in ...
Continue reading

MA-1475.072026: MyCERT Advisory - Oracle E-Business Suite Improper Privilege Management Vulnerability

  • 27th July 2026
A security advisory published on July 22, 2026, identifies a vulnerability in Oracle E-Business Suite stemming from improper privilege management. In simple terms, this flaw means the system may fail to correctly restrict access to certain features, data, or functions, potentially allowing unauthorized users to view sensitive business information, ...
Continue reading