ThreatCluster
About Blog Help Contact
Login
  • Feed
  • Dashboard
  • Saved
THREAT HUNTING
  • Domains
  • IP Addresses
  • File Hashes
  • CVEs
THREAT INTELLIGENCE
  • APT Groups
  • Ransomware Groups
  • Malware Families
  • Attack Types
  • MITRE ATT&CK
  • Security Standards
  • Vulnerability Types
BUSINESS INTELLIGENCE
  • Companies
  • Industry Sectors
  • Security Vendors
  • Government Agencies
  • Countries
  • Platforms
Home / Feed / Article

Microsoft's Patch Tuesday baker's dozen: 12 critical bugs plus a SharePoint RCE

Threat Score:
52
Theregister
2 days ago
Part of cluster #1881
Microsoft's Patch Tuesday baker's dozen: 12 critical bugs plus a SharePoint RCE

Overview

Security Microsoft's Patch Tuesday baker's dozen: 12 critical bugs plus a SharePoint RCE None under active exploit…yet Microsoft’s August Patch Tuesday flaw-fixing festival addresses 111 problems in its products, a dozen of which are deemed critical, and one moderate-severity flaw that is listed as being publicly known. The good news is that Microsoft says none of theAugust security holesare under active exploitation. But before you put your feet up and relax, or pop some champagne, remember tha...

Continue Reading on Original Site

Related Articles

5 articles
1

CISA Warns N-able Bugs Under Attack, Patch Now

Dark Reading • 6 hours ago

Two critical N-able vulnerabilities enable local code execution and command injection; they require authentication to exploit, suggesting they wouldn't be seen at the beginning of an exploit chain.

Score
86
Read more
2
Stop Reacting; Start Anticipating: The Global State of Threat Intelligence

Stop Reacting; Start Anticipating: The Global State of Threat Intelligence

Brighttalk • 10 hours ago

Presented by Jitin Shabadu, Forrester Analyst | Jayce Nichols, Director, Intelligence Solutions, Google Threat Intelligence Group

Score
83
Read more
3

US Sanctions Crypto Exchange Tied to Russian Ransomware

Data Breach Today UK • 1 hour ago

US Treasury Says Crypto Exchange Helped Launder $100 Million for Ransomware Gangs The U.S. Department of Treasury sanctioned Thursday a Russian founder and co-owners of the Garantex cryptocurrency exchange in a bid to tighten methods criminal hackers use to launder extortion money and Kremlin sanctions busting. Regulators also sanctioned Garantex successor Grinex.

Score
82
Read more
4

Norway confirms dam intrusion by Pro-Russian hackers

Security Affairs • 8 hours ago

Norway’s security service PST says pro-Russian hackers took over a dam in April, opening outflow valves. Norway’s Police Security Service (PST) says pro-Russian hackers seized control of a dam’s systems in April, opening outflow valves. On April 7, the attackers took control of a dam in Bremanger, western Norway, opening a flood gate to release […]

Score
81
Read more
5

Multiple ZTNA Products Authentication Bypass

FortiGuard Threat Signal • 57 minutes ago

Threat Signal Report Multiple ZTNA Products Authentication Bypass Description What is the Vulnerability? A series of critical vulnerabilities affecting leading zero trust platforms - Zscaler, Netskope, and Check Point (Perimeter 81) - have been disclosed following a seven-month research campaign by security researchers David Cash and Richard Warren. These flaws include authentication bypasses, privilege escalation, and hardcoded credentials, significantly weakening the core security assumptions

Score
80
Read more

Save to Folder

Choose a folder to save this article:

Article Intelligence

Key entities and indicators for this article

CVES
CVE-2025-21479
CVE-2025-27038
CVE-2025-27429
CVE-2025-42950
CVE-2025-42957
ATTACK TYPES
Advanced Persistent Threat
Adversary-in-the-Middle
Authentication Bypass
Exploitation of Authentication Mechanisms
Phishing
VULNERABILITIES
Authentication Bypass
Buffer Overflow
DDoS
Denial of Service
Information Disclosure
COMPANIES
Adobe
Akamai
Apple
Google
Intel
AGENCIES
CISA
Cybersecurity and Infrastructure Security Agency
NCSC
SECURITY VENDORS
Action1
Akamai
Check Point
Palo Alto Networks
Rapid7
PLATFORMS
Active Directory
Android
Azure
Exchange Server
Google Cloud Platform
APT GROUPS
APT41
Earth Lusca
RANSOMWARE
AnDROid
Explorer
First
One
QuantumLocker
MITRE ATT&CK
Phishing
T1003
T1021
T1068
T1069
MALWARE
WannaCryptor
INDUSTRIES
Cybersecurity
Information Technology
Technology
ARTICLE INFORMATION
Article #10868
Published 2 days ago
Theregister

We use cookies

We use cookies and similar technologies to enhance your experience, analyse site usage, and assist in our marketing efforts.

Cookie Settings

Essential Cookies

Required for the website to function. Cannot be disabled.

  • Session management and authentication
  • Security and fraud prevention
  • Cookie consent preferences

Analytics Cookies

Help us understand how visitors interact with our website.

  • Plausible Analytics - Privacy-focused usage statistics
  • PostHog - Product analytics and feature tracking
  • Page views and user journey analysis

Performance Cookies

Help us monitor and improve website performance.

  • Page load time monitoring
  • Error tracking and debugging
  • Performance optimisation

Marketing Cookies

Used to track visitors across websites for marketing purposes.

  • Conversion tracking
  • Remarketing campaigns
  • Social media integration