The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified a vulnerability in SonicWall Secure Mobile Access (SMA) 100 Series gateways, citing evidence of active exploitation. The flaw, which affects several SMA versions, allows a remote attacker to inject arbitrary commands. Federal agencies are urged to apply necessary mitigations by May 2025.

Hackers Actively Exploiting Critical Exchange & SharePoint Server Vulnerabilities
Microsoft has warned that cybercriminals are increasingly exploiting critical vulnerabilities in on-premises Exchange and SharePoint Servers. New techniques like NTLM relay and credential leakage enable