Unknown attackers exploit yet another critical SharePoint bug

2026-03-19T19:24:03Z02966b03ed683fd357411ec2e24bad67b99ca9cf6f6fbfbfbe52b5a8413fbfc9
chrome-zero-daycisco-secure-firewallcve-2026-20131darksworddata-breachexploitationios-exploitiran-linked-actorsmicrosoftmicrosoft-intunephishingransomwaresharepointsupply-chain-securitytelusvpn-spoofingzero-day

What happened

Feed highlights multiple active and high-impact incidents: unknown attackers are exploiting a newly disclosed critical Microsoft SharePoint vulnerability (US government warning), and ransomware actors used a maximum-severity zero-day in Cisco Secure Firewall Management Center (CVE-2026-20131) prior to patching. Other notable items include an Iran-linked abuse of Microsoft Intune in an attack on Stryker, an iOS exploit kit dubbed Darksword targeting iPhones, multiple Chrome zero-days (Skia/V8) under active exploitation, large-scale phishing campaigns using spoofed VPN clients, and major data-br

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
02966b03ed683fd357411ec2e24bad67b99ca9cf6f6fbfbfbe52b5a8413fbfc9
Enrichment time
2026-03-19T19:24:03Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Unknown attackers exploit yet another critical SharePoint bug · Baitaphish