Skip to content

Cybersecurity agencies warn of active exploits in Microsoft SharePoint and Mikrotik routers as attacks on critical infrastructure rise

Cybersecurity agencies warn of active exploits in Microsoft SharePoint and Mikrotik routers as attacks on critical infrastructure rise
28 articles·17 sources·updated about 2 hours ago·View in graph
science & techlatviapolandunited states of america
AI-generated · Hosted in Europe

Global cybersecurity threats intensified on Friday as authorities and researchers flagged active exploitation of critical vulnerabilities and rising attacks on essential infrastructure.

The U.S. Cybersecurity and Infrastructure Security Agency added two flaws to its Known Exploited Vulnerabilities catalog: CVE-2026-65660, a code injection vulnerability in Microsoft SharePoint with a CVSS score of 8.8, and CVE-2026-67279, an improper enforcement flaw in Mikrotik RouterOS with a score of 6.9. Microsoft confirmed evidence of attacks exploiting the SharePoint flaw, which it updated from a spoofing vulnerability to one enabling remote code execution . CERT Polska reported that CVE-2026-67279, chained with CVE-2026-86060, allowed unauthenticated attackers to gain full administrative control of exposed Mikrotik routers .

Meanwhile, Luca Tagliaretti, executive director of the European Cybersecurity Competence Centre, warned at the CyberShield forum in Riga that critical infrastructure is increasingly targeted as a tool of geopolitical pressure. He cited data showing 80 to 85 percent of cyberattacks in Ukraine target civilian infrastructure, including energy, transportation, and public services, with similar trends observed in Europe .

In Latvia, Cert.lv reported persistent vulnerabilities in phishing defenses after 15,436 simulated phishing emails were sent in 2025, with 31.48 percent opened and credentials entered in 3,032 cases. The organization also identified 82 vulnerabilities in IT systems, including critical flaws enabling unauthorized access to user data .

Share

Follow us for live European news

Source Intelligence
17 sources5 countries
Geographic Origin5 located
  • 1
  • 1
  • 1
  • 1
  • 1

12 further sources not geolocated

Political Spectrum1 mapped
CentreCentreRightRightLeftCentreLeft

Articles

Live From Europe

From @financialtimes.com: Bank accounts of a Montana-based payments business working on behalf of Tether and Bitfinex have been seized by federal prosecutors who accuse it of making hundreds of millions of dollars of illegal transfers. buff.ly/M7EdF8l

bluesky_ICIJ · about 2 hours ago

Live From Europe

Tens of millions of dollars that the London-listed iron ore giant Ferrexpo donated to a Ukrainian charity were not used for their intended purpose, according to a forensic report shared with OCCRP.

bluesky_OCCRP · about 2 hours ago

Live From Europe

wtf? 💧 Rainbet.com the #1 Non-KYC Crypto Casino & Sportsbook @rainbetcom +18

telegram_War Monitors · about 2 hours ago

Live From Europe

Uczelnie pod presją nowych przepisów. Eksperci proponują nowy model cyberochrony Uczelnie muszą przygotować się na nowe obowiązki cyberbezpieczeństwa wynikające z nowelizacji ustawy o krajowym systemie cyberbezpieczeństwa (KSC) oraz Dyrektywy NIS2. Rośnie presja na władze szkół wyższych. W odpowiedzi na te wyzwania eksperci - na czele ze śląskimi uczelniami - przygotowali koncepcję nowego modelu cyberochrony dla sektora nauki.

wnp.pl · about 2 hours ago

Live From Europe

Firmy mogą spełniać wymagania NIS2 i nadal być podatne na atak Nowe przepisy cyberbezpieczeństwa stopniowo wchodzą w życie, co dla firm oznacza konieczność uporządkowania procedur, zabezpieczeń i reagowania na incydenty. Grzegorz Wawryniuk, dyrektor biura produktu i marketingu w Exatelu, wskazuje jednak, że sama zgodność z przepisami nie wystarczy: potrzebne są testy odporności, ochrona OT i łańcucha dostaw oraz stałe budowanie kompetencji pracowników.

wnp.pl · about 2 hours ago

Live From Europe

Koniec z cyberbezpieczeństwem na papierze. Wchodzą w życie zupełnie nowe obowiązki Unijna dyrektywa NIS2 już zmienia zasady gry: cyberbezpieczeństwo przestaje być domeną wyłącznie działów IT, a staje się obowiązkiem całej organizacji, w tym przede wszystkim zarządu. Firmy i instytucje muszą szybko przygotować się na nowe wymagania, a czas goni.

wnp.pl · about 2 hours ago

Live From Europe

Copilot devient une « super app » : chat, code et agents réunis Microsoft a dévoilé le 25 septembre 2026 la plus grosse mise à jour de Copilot depuis son lancement, présentée par Satya Nadella comme « lOS du travail ». Lassistant réunit désormais le chat, la création dapplications et des agents autonomes dans une seule application.

frandroid · about 2 hours ago

Live From Europe

Krypto-Konten eingefroren: Das undurchsichtige Bankennetzwerk von Tether Der Zugang zum traditionellen Bankensystem ist für Krypto-Unternehmen mit Hürden verbunden. Wenn etablierte Akteure auf verschleierte Umwege über Strohfirmen zurückgreifen müssen, ruft das unweigerlich die Ermittlungsbehörden auf den Plan. weiterlesen auf t3n.de

t3n · about 2 hours ago

Live From Europe

heise-Angebot: iX-Workshop: Cybersecurity im KMU – vom Sicherheitscheck zum Maßnahmenplan Machen Sie Ihre Cybersecurity planbar: Bewerten Sie Ihren Sicherheitsstatus, setzen Sie die richtigen Prioritäten und entwickeln Sie einen konkreten Fahrplan.

heise · about 2 hours ago

Live From Europe

Smart-Glasses-Boom hält an: Stückzahlen mehr als verdoppelt Trotz anhaltender Datenschutzkontroversen verzeichnen Smart-Glasses weiterhin starke Zuwächse, mit Meta als klarem Marktführer.

heise · about 2 hours ago

Live From Europe

Neue Vorwürfe – Hat Xhaka ein gefälschtes Zertifikat für USA-Reise benutzt? Bedingungen rund um Granit Xhakas gefälschtes Covid-Zertifikat legen eine Nutzung bei einer USA‑Reise nahe.

srf.ch · about 2 hours ago

Live From Europe

760 mln zł rocznie na scamie. Meta atakuje raport. „Fikcja stworzona na zamówienie - Raport to fikcja stworzona na zamówienie, która służy wprowadzaniu opinii publicznej w błąd. Został zamówiony przez kancelarię prawną reprezentującą osobę, która nas pozwała - tak Meta komentuje głośny raport Fundacji Instrat, który dowodzi, że koncern rocznie może zarabiać nawet 760 mln zł na scamie.

wnp.pl · about 2 hours ago

Live From Europe

Critical infrastructure is becoming a tool for exerting geopolitical pressure - expert - The Baltic Times RIGA - Critical infrastructure is becoming a tool of geopolitical pressure, said Luca Tagliaretti, executive director of the European Cybersecur......

baltic times · about 2 hours ago

Live From Europe

GRS Certification for Bags: Five Mistakes Buyers Make With the Certificate - The Baltic Times The GRS certificate a supplier sends with a quotation for recycled bags is a scope certificate, because a transaction certificate cannot exist u......

baltic times · about 2 hours ago

Live From Europe

How a Cloud-Based LMS Can Support Corporate Training at Scale - The Baltic Times Corporate education must reach employees across offices, time zones, job functions, and experience levels. Classroom sessions can create schedul......

baltic times · about 2 hours ago

Live From Europe

Latvia has room for improvement in recognising scam e-mails In the phishing simulation campaigns carried out last year by the cyber incident response organisation Cert.lv, 31.5 per cent of the 15,436 emails sent were opened, according to the 2025 report on Latvian cyber security and Cert.lvs technical activities.

lsm latvia · about 2 hours ago

Live From Europe

Covid-Pandemie – Zertifikat-Betrug – warum die juristische Aufarbeitung zäh ist Der Fall Granit Xhaka zeigt: Noch immer arbeitet die Justiz Betrugsfälle zu Covid-Zertifikaten auf.

srf.ch · about 2 hours ago

Live From Europe

Stützungsfall: Bankhaus RSA hat fast 450 Millionen Euro an Garantien erhalten Das oberbayerische Kreditinstitut benötigt eine deutlich höhere Unterstützung der BVR-Sicherungseinrichtung als bisher bekannt. Das Portfolio notleidender Kredite ist besonders groß.

handelsblatt · about 2 hours ago

Live From Europe

Хакерская группировка ShinyHunters украла медицинские данные сотрудников ФБР Хакеры из группировки ShinyHunters, взломавшие Федеральное бюро расследований США, продемонстрировали журналистам часть данных, к которым им удалось получить доступ. Как пишут Reuters и BBC News, речь идет о файлах с медицинской информацией, включая результаты анализов и тестов на профпригодность.

meduza · about 2 hours ago

Live From Europe

Un nou raport arată că la Universitatea din Utah, unde a fost asasinat Charlie Kirk, erau deficiențe de securitate O analiză publicată de Universitatea Utah Valley a constatat că universitatea unde a ținut activistul politic conservator Charlie Kirk un discurs, înainte să fie ucis, nu a efectuat o evaluare serioasă a măsurilor de securitate. Organizația politică a lui Charlie Kirk a insistat ca acesta să țină un discurs în aer liber, în ciuda preocupărilor legate de securitate exprimate de reprezentanții campusului, care nu au reușit să evalueze corespunzător pericolele, inclusiv posibilitatea ca un trăgător să se afle pe acoperiș, potrivit unui raport publicat vineri, relatează wsls.com.

digi24 · about 2 hours ago

Live From Europe

Många blev miljonärer på bara en Powerpoint Efter några skakiga år ser Klarna-toppen David Sandström medvind igen för svenska entreprenörer.

svenska dagbladet · about 2 hours ago

Live From Europe

Free software calculates how many solar modules fit on a rooftop from a photo Tegrona has launched free software that uses photographs to calculate how many PV modules can fit on a rooftop. Tegrona Lite corrects image perspective, determines roof dimensions and automatically generates module layouts without requiring CAD tools or on-site measurements. The post Free software calculates how many solar modules fit on a rooftop from a photo appeared first on pv magazine Global.

pv magazine · about 3 hours ago

Live From Europe

Kiteworks Urges Customers to Shut Down Systems for 9 Hours Over Possible Cyber Attack Kiteworks (formerly Accellion) is urging customers to shut down their systems as a precautionary measure for nine hours over the weekend after it received threat intelligence about an imminent cyber attack. "Kiteworks received credible threat intelligence from federal intelligence authorities indicating that a threat actor may attempt to target some Kiteworks systems," said Frank Balonis, Chief

the hacker news · about 3 hours ago

Live From Europe

SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Microsoft SharePoint and Mikrotik RouterOS to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities in question are as follows - CVE-2026-65660 (CVSS score: 8.8) - A code injection vulnerability in Microsoft Office SharePoint

the hacker news · about 3 hours ago

Live From Europe

Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link Details have emerged about a high-severity security flaw in the Elementor Website Builder WordPress plugin that could be exploited by an unauthenticated attacker to create rogue administrator accounts and take control of a site. The cross-site request forgery (CSRF) vulnerability, which has yet to be assigned a CVE identifier, carries a CVSS score of 8.8 out of 10.0. It only affects versions

the hacker news · about 3 hours ago

Live From Europe

Google corrige 42 failles de sécurité dans Chrome Une mise à jour de sécurité vient dêtre publiée pour Chrome. Google corrige au total 42 vulnérabilités (...)

le monde informatique · about 3 hours ago

Live From Europe

Telex: Les lunettes connectées au coeur de plusieurs enquêtes, AMD valorisé à plus de 1000 Md$, Airbus remporte un contrat de 25 ans en cybersécurité -Les lunettes connectées au cœur de plusieurs enquêtes. Le parquet de Paris a ouvert plusieurs enquêtes après avoir (...)

le monde informatique · about 3 hours ago

Live From Europe

1,6 Millionen Fotos in 21 Tagen: Hacker zerlegen Überwachungskamera – und finden brisante Daten Hacker:innen haben in den USA eine der umstrittenen Überwachungskameras des Herstellers Flock Safety unter die Lupe genommen. Dabei fanden sie heraus, dass die Geräte nicht nur Autokennzeichen speichern, sondern auch Personen und Fahrräder.weiterlesen auf t3n.de

t3n · about 3 hours ago