SharePoint RCE, WordPress flaws, PAN-OS actively exploited in ransomware campaigns
ID: 2db10908-2b4c-5e17-bb92-08345c797d5c
STIX ID: report--2db10908-2b4c-5e17-bb92-08345c797d5c
Feed Name: defend.network
This briefing details multiple high-severity, actively exploited vulnerabilities—most notably a critical SharePoint RCE (CVE-2026-50522) used to steal machine keys and persistent web compromises from chained WordPress flaws (wp2shell CVEs)—reports PAN-OS being weaponized by Qilin ransomware operators, describes an AWS Kiro IDE configuration abuse, and notes law enforcement dismantling of the Kratos phishing-as-a-service platform; it provides recommended urgent patching, detection, and mitigation actions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
