Expert In the Cloud
  • Welcome to My Cloud & Security Hub
  • About Me
  • Cloud
    • AWS
    • MICROSOFT
      • EXCHANGE
        • EXCHANGE 2010
        • EXCHANGE 2013
        • EXCHANGE 2016
        • EXCHANGE 2019
      • OFFICE 365
        • Azure
        • Azure Powershell
        • OneDrive
        • Outlook
        • Portal Management
        • SharePoint
        • Skype for Business
        • Teams
  • Contact Us
  • HYPERVISORS
    • VMWare
  • NETWORK & SECURITY
    • NETWORK
    • SECURITY
      • SONICWALL
      • FORTINET
        • FORTIVM
  • SERVER
    • Powershell
    • SQL
  • BLOGS
    • BLOGS

BLOGS

This is a section for all my blogs.

Sha1‑Hulud Second Wave — Executive Summary and Immediate Risk

November 24, 2025 Faeem 0

What happened: A new wave of Sha1‑Hulud supply‑chain attacks trojanized hundreds of npm packages (uploaded Nov 21–23, 2025) to run malicious code during the preinstall […]

Summary of the Windows 11 24H2 XAML registration bug

November 24, 2025 Faeem 0

Microsoft confirmed a timing bug in Windows 11 24H2 cumulative updates (since July 2025) that prevents key XAML packages from registering quickly enough after update/install. […]

WhatsApp enumeration: how researchers scraped 3.5 billion accounts and what it means for defenders

November 20, 2025 Faeem 0

Researchers at the University of Vienna demonstrated a powerful account‑enumeration technique against WhatsApp that allowed them to check hundreds of millions of phone numbers per […]

Sneaky2FA Adds Browser‑in‑the‑Browser to Its Phishing Toolkit — Why Microsoft 365 Users Are at Heightened Risk

November 20, 2025 Faeem 0

Sneaky2FA’s adoption of the browser‑in‑the‑browser (BitB) trick marks a meaningful escalation in phishing sophistication. The kit already automated real‑time MFA relay (AitM) and SVG‑based UI […]

WrtHug Hijacks EoL ASUS Routers at Scale — What Network Owners Need to Know

November 19, 2025 Faeem 0

SecurityScorecard’s STRIKE team has uncovered Operation WrtHug, a large‑scale campaign that has seized tens of thousands of end‑of‑life ASUS WRT routers worldwide by chaining several […]

ShadowRay 2.0: How Exposed Ray Clusters Are Being Turned into a Global Crypto‑Mining Botnet

November 19, 2025 Faeem 0

A new campaign dubbed ShadowRay 2.0 is weaponizing exposed Ray clusters to build a self‑propagating cryptomining botnet and more. Researchers at Oligo attribute the activity […]

Tycoon 2FA and the Collapse of Legacy MFA — Why Passwordless, Phishing‑Proof Identity Is Now Mandatory

November 18, 2025 Faeem 0

Phishing kits have always been the low‑effort, high‑reward tool of choice for attackers. Tycoon 2FA proves they’ve reached a new level of industrialization: turnkey, automated, […]

Chrome 142 Emergency Update Fixes V8 Type‑Confusion Zero‑Day — What You Need to Do Now

November 18, 2025 Faeem 0

Google released an out‑of‑band Chrome 142 update to patch a high‑severity V8 engine vulnerability (CVE‑2025‑13223) that’s been exploited in the wild. The issue is a […]

Decades‑old Finger Protocol Abused in ClickFix Attacks — Why Small Commands Can Cause Big Damage

November 17, 2025 Faeem 0

The Finger protocol — a relic from the early internet used to query user info on remote hosts — has quietly reappeared in modern malware […]

Fortinet FortiWeb Zero‑Day Exploited in the Wild — Urgent Actions for Network Teams

November 15, 2025 Faeem 0

Fortinet has confirmed active exploitation of a critical vulnerability in FortiWeb web application firewall appliances that allows unauthenticated attackers to gain administrative access. Tracked as […]

Posts pagination

« 1 … 44 45 46 … 51 »

Recent Posts

  • On‑Prem Microsoft Exchange Server CVE‑2026‑42897 Actively Exploited May 15, 2026
  • Cisco Catalyst SD‑WAN Controller 0‑Day Actively Exploited May 15, 2026
  • Hackers Exploit Auth Bypass in Burst Statistics WordPress Plugin May 15, 2026
  • Windows DNS Client Vulnerability Enables Remote Code Execution May 14, 2026
  • AI Hallucinations Are Creating Real Security Risks May 14, 2026

Categories

  • AWS
  • AZURE
  • Azure
  • Azure Powershell
  • BLOGS
  • Calendar
  • EXCHANGE
  • EXCHANGE 2010
  • EXCHANGE 2013
  • EXCHANGE 2016
  • EXCHANGE 2019
  • FORTINET
  • FORTIVM
  • Hypervisors
  • MICROSOFT
  • NETWORK
  • NETWORK & SECURITY
  • OFFICE 365
  • OneDrive
  • Outlook
  • Portal Management
  • Powershell
  • SECURITY
  • Server
  • SharePoint
  • Skype for Business
  • SONICWALL
  • SQL
  • Teams
  • Uncategorized
  • VMWare
  • Windows
Follow Us
  • LinkedIn
  • Facebook
Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Copyright © 2026 | WordPress Theme by MH Themes