Tag

Credential Rotation

All articles tagged with #credential rotation

SharePoint deserialization flaw used to steal machine keys and sustain access after patching
security1 month ago

SharePoint deserialization flaw used to steal machine keys and sustain access after patching

Security researchers warn that the critical SharePoint deserialization flaw CVE-2026-50522 is being exploited to steal machine keys, enabling attackers to forge tokens and linger on-premises deployments even after patches; PoC exploits circulated online, prompting defenders to apply July updates and rotate credentials to limit exposure.

Vercel Breach Linked to Context AI Hack Exposes Limited Customer Credentials
technology4 months ago

Vercel Breach Linked to Context AI Hack Exposes Limited Customer Credentials

Vercel disclosed a security incident linked to the Context.ai compromise that allowed an attacker to hijack an employee’s Google Workspace account and access some non-sensitive internal environments and environment variables; sensitive secrets remained encrypted, but a limited subset of customers reportedly had credential exposure, triggering immediate rotation and ongoing investigations with Mandiant and Context.ai, as the company rolls out dashboard updates and advises admins to review logs and rotate non-sensitive secrets.