Hackers, reportedly from ransomware cybercriminal gang Clop, broke into product lifecycle management tools commonly used by manufacturers in recent attacks at Shell, GE, and Philips that exploited vulnerabilities in PLM software from vendor PTC.
Threat actors have begun targeting internet-facing Microsoft SharePoint servers with exploit code for a critical authentication-bypass vulnerability less than 24 hours after detailed technical research and a public proof of concept were released.