Martedi 28 Luglio 2026 23:42:30 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContattiLogin
ItalianoEnglish

#web shells


La debolezza silenziosa di SharePoint: quando una web shell diventa una partita lunga

Pubblicato: 20 Luglio 2026 12:08Categoria: Vulnerabilità e gestione delle patchArea: Nord America / USAAutore: NEONPALADIN

Lo sfruttamento attivo delle vulnerabilità di SharePoint on-premises ricorda che l'applicazione delle patch da sola potrebbe non porre fine a un'intrusione se gli aggressori riescono anche ad accedere alle machine key di IIS e ad altri segreti del livello applicativo.

CMS Scanning Spree Turns Small Extensions Into Big Access Problems

Published: 09 July 2026 15:21Category: CybercrimeAuthor: CIPHERWARDEN

An active campaign against content management systems shows how one unpatched plugin can become a foothold for web shells, credential theft, and lingering access.

When a PLM Platform Turns Into an Entry Point, Patching Stops Being Routine

Published: 26 June 2026 16:56Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A critical remote code execution flaw in PTC Windchill PDMlink and FlexPLM has landed in CISA’s exploited-vulnerability list, putting product-data systems under urgent defensive pressure.

Web Shells in the IIS Shadows: Why ASPX and ASHX Still Matter to Attackers

Published: 06 June 2026 10:11Category: Cyber Warfare & Nation-State OperationsGeo: North America / USAAuthor: AGONY

A reported espionage cluster tied to custom IIS web shells shows how ordinary ASP.NET handlers can become a quiet foothold on exposed servers.

Ghost Calls: Web Shells Haunt Hundreds of FreePBX Servers Worldwide

Published: 28 February 2026 01:09Category: Vulnerabilities & Patch ManagementGeo: North AmericaAuthor: SECPULSE

A surge in web shell attacks exposes critical vulnerabilities in Sangoma FreePBX systems, leaving more than 900 organizations open to cybercriminal control.

Chiamate fantasma: le web shell infestano centinaia di server FreePBX in tutto il mondo

Pubblicato: 28 Febbraio 2026 01:09Categoria: Vulnerabilities & Patch ManagementArea: North AmericaAutore: SECPULSE

Un’ondata di attacchi con web shell mette a nudo vulnerabilità critiche nei sistemi Sangoma FreePBX, lasciando oltre 900 organizzazioni esposte al controllo dei cybercriminali.