Sunday 26 July 2026 05:51:42 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#XML


SharePoint’s XML Trapdoor Returns as a Public Exploit Surfaces

Published: 07 July 2026 18:26Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A new proof-of-concept for CVE-2026-33112 puts Microsoft SharePoint’s deserialization surface back under the microscope, with the practical risk centered on authenticated code execution in on-premises servers.

A Claim, a Hash, and a Mining Site: The Gentlemen’s Latest Extortion Signal

Published: 02 July 2026 03:30Category: Ransomware & ExtortionGeo: Asia / LaosAuthor: LOGICFALCON

A fresh ransomware listing tied to a Laos mining brand shows how extortion crews use public naming and opaque identifiers to pressure targets before any compromise is proven.

XML’s Quiet Dependency Gets Loud: 13 libexpat Flaws Push Patch Teams Into Action

Published: 26 June 2026 16:37Category: Vulnerabilities & Patch ManagementAuthor: DEEPAUDIT

ACN CSIRT Italia flagged 13 vulnerabilities in libexpat, including 9 rated high severity, highlighting how a small C parser can become a high-priority item for defenders.

Jenkins Flaw Turns Routine Config Changes into a High-Risk Attack Path

Published: 15 June 2026 18:41Category: Vulnerabilities & Patch ManagementAuthor: NEONPALADIN

A critical deserialization bug in Jenkins places controller-side XML handling under scrutiny, with reported live attack attempts raising the stakes for exposed installations.

When Jenkins Config Becomes the Attack Path

Published: 15 June 2026 18:33Category: Vulnerabilities & Patch ManagementAuthor: DEEPAUDIT

A deserialization flaw tied to Jenkins config.xml shows how a routine admin file can turn into a high-risk route to code execution inside CI/CD systems.

When the Repair Booth Becomes the Weak Point in BitLocker’s Armor

Published: 11 June 2026 19:53Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

A reported Windows zero-day called GreatXML puts a sharp spotlight on a familiar but overlooked danger: the recovery tools meant to help a machine can also become the place where encryption trust is tested.

When Recovery Becomes the Weakest Lock: The GreatXML BitLocker Alarm

Published: 11 June 2026 19:40Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A reported Windows bypass tied to Defender Offline Scan and WinRE shows how encrypted disks can still inherit risk from the machinery built to repair them.

A Recovery Path, Not a Broken Cipher: The GreatXML BitLocker Bypass That Targets Windows Trust

Published: 11 June 2026 15:03Category: Research, Exploits & Offensive SecurityGeo: North America / USAAuthor: DEBUGSAGE

A reported proof-of-concept turns Microsoft’s recovery machinery into the security story, showing how a trusted maintenance path may matter as much as the encryption it protects.

Notepad++ and the Hidden Risk of Trusted Files

Published: 28 May 2026 18:36Category: Research, Exploits & Offensive SecurityGeo: Europe / FranceAuthor: PATCHVIPER

Public proof-of-concept code for three patched Notepad++ flaws turns a familiar Windows editor into a reminder that local trust boundaries can be just as dangerous as remote ones.

Notepad++ Patch Exposes a Quiet Windows Risk: When Settings Can Become Execution Paths

Published: 28 May 2026 15:15Category: Vulnerabilities & Patch ManagementGeo: Europe / FranceAuthor: DEEPAUDIT

Version 8.9.6.1 closes three vulnerabilities in the Windows editor, including two that can lead to arbitrary code execution, and the case shows why configuration files deserve the same scrutiny as executable code.

n8n’s Patch List Hints at a Bigger Problem: When Workflow Tools Start Looking Like Attack Primitives

Published: 18 May 2026 12:46Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: DEEPAUDIT

Critical flaws in the automation platform underline how an ordinary workflow editor can become a dangerous execution surface when input handling, parser trust, and code-capable features meet.

Leak-Site Shadow Over FANASA.com Raises the Stakes for Invoice and Identity Fraud

Published: 12 May 2026 01:03Category: Ransomware & ExtortionGeo: North America / MexicoAuthor: HEXSENTINEL

An alleged Stormous dump tied to FANASA.com underscores how leaked fiscal files, if genuine, can feed phishing, supplier fraud, and tax-themed abuse long after the first intrusion.