Three hacking groups, two vulnerabilities and all eyes on ChinaThe Record·Dec 8, 15:09 UTC · Dec 8, 2025VulnerabilityCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
SolarWinds Web Help Desk Exploited for RCE in MultiThe Hacker News·Mar 7, 07:03 UTC · Mar 7, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40536CVE-2025-26399+1 CVEs60
CISA Flags SolarWinds, Ivanti, and Workspace One Vulnerabilities as Actively ExploitedThe Hacker News·Mar 11, 07:17 UTC · Mar 11, 2026Vulnerability in the wildCVE-2021-22054CVE-2025-26399CVE-2026-160360
Unpatched SolarWinds WHD instances under active attackHelp Net Security·Mar 9, 17:22 UTC · Mar 9, 2026Vulnerability in the wildCVE-2025-26399160
China-linked hackers exploit patched ToolShell flaw to breach Middle East telecomSecurity Affairs·Oct 24, 08:37 UTC · Oct 24, 2025Vulnerability in the wildCVE-2025-53770CVE-2021-3694260
Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July PatchThe Hacker News·Oct 22, 12:56 UTC · Oct 22, 2025VulnerabilityCVE-2025-53770CVE-2025-49704CVE-2025-49706+1 CVEs160
Chinese nation-state groups exploiting SharePoint vulnerability, Microsoft confirmsThe Record·Jul 22, 19:12 UTC · Jul 22, 2025Vulnerability in the wildCVE-2025-49706CVE-2025-49704CVE-2025-53770+1 CVEs60
SharePoint ‘ToolShell’ Vulnerabilities Exploited by Chinese HackersInfosecurity Magazine·Jul 22, 15:40 UTC · Jul 22, 2025VulnerabilityCVE-2025-53770CVE-2025-5377160