Announcements

N-able N-central: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability

  • 5th August 2026
A security vulnerability has been identified in N-able N-central, a tool used for remote monitoring and management of IT infrastructure. The flaw is an authentication bypass that operates via an alternate access path or channel, allowing unauthorized users to access the system without providing valid login credentials.If you rely on N-able ...
Continue reading

JetBrains TeamCity: JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

  • 5th August 2026
A security vulnerability has been identified in JetBrains TeamCity, a tool many teams use to automate building, testing, and deploying websites and applications. The flaw is caused by the tool improperly handling untrusted external data during a routine process where connected development agents check in for new work tasks.This issue could allow ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 5th August 2026
A cybersecurity advisory was published on July 20 2026 by MyCERT, warning of new active malicious attacks targeting Microsoft SharePoint. SharePoint is a widely used business tool that lets teams store, share, and collaborate on files and internal data, both across staff and with external partners.The advisory outlines recommended steps to secure, ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 5th August 2026
On July 22, 2026, Malaysia’s national cybersecurity agency MyCERT released an advisory identifying a security vulnerability in Microsoft Active Directory Federation Services (AD FS), a common tool businesses use to manage secure user logins and access to company applications and services.The issue is classified as an insufficient granularity of ...
Continue reading