Announcements

Microsoft Windows Ancillary Function Driver for WinSock : Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability

  • 12th August 2026
A security flaw has been identified in the Windows Ancillary Function Driver for WinSock, a core Windows component that manages network-related functions for applications running on your system. The issue is a use-after-free vulnerability, which occurs when a program attempts to access a block of memory it has already released for other system ...
Continue reading

Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) : Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability

  • 12th August 2026
A security vulnerability has been found in Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) firewall devices. This flaw relates to how the device checks its internal memory, and can be exploited by an unauthorized remote user who does not need any login access to the device.If triggered, the ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 12th August 2026
A cybersecurity advisory from Malaysia’s national cybersecurity response team (MyCERT) was published on 20 July 2026, focused on securing Microsoft SharePoint following the discovery of new exploitation methods targeting the platform. SharePoint is a widely used tool for businesses to store and share files, collaborate on team projects, and ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 12th August 2026
On 22 July 2026, a security advisory was published for a vulnerability affecting Microsoft Active Directory Federation Services (AD FS), a tool many organizations use to control who can access their websites, applications, and internal company resources. The issue stems from access controls for the service that are not precise enough. This means ...
Continue reading