<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #SharePoint</title><description>Cybersecurity articles tagged #SharePoint on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Microsoft August 2026 Patch Tuesday: 398 Flaws and Zero-Day</title><link>https://runtimerebel.com/blog/microsoft-august-2026-patch-tuesday-398-flaws-and-zero-day</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-august-2026-patch-tuesday-398-flaws-and-zero-day</guid><description>Microsoft patches 398 flaws in August 2026, including an actively exploited Windows kernel driver zero-day and four critical RCE vulnerabilities.</description><pubDate>Wed, 12 Aug 2026 01:05:21 GMT</pubDate><category>Windows</category><category>SharePoint</category><category>Zero-Day</category><category>Lazarus Group</category><category>CVE-2026-68820</category></item><item><title>Swiss Government SharePoint Breach: 200 Accounts Compromised</title><link>https://runtimerebel.com/blog/swiss-government-sharepoint-breach-200-accounts-compromised</link><guid isPermaLink="true">https://runtimerebel.com/blog/swiss-government-sharepoint-breach-200-accounts-compromised</guid><description>Switzerland&apos;s federal IT office confirms a Microsoft SharePoint breach compromised approximately 200 accounts, leading to a swift remediation.</description><pubDate>Mon, 10 Aug 2026 00:59:49 GMT</pubDate><category>SharePoint</category><category>Data Breach</category><category>Swiss Government</category><category>Account Compromise</category><category>Microsoft SharePoint</category></item><item><title>CVE-2026-50522: SharePoint RCE Exploitation to Steal Machine Keys</title><link>https://runtimerebel.com/blog/cve-2026-50522-sharepoint-rce-exploitation-to-steal-machine-keys</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-50522-sharepoint-rce-exploitation-to-steal-machine-keys</guid><description>Critical CVE-2026-50522 in Microsoft SharePoint is actively exploited to steal machine keys, enabling persistent access. Understand the threat and mitigation.</description><pubDate>Tue, 21 Jul 2026 21:12:05 GMT</pubDate><category>CVE-2026-50522</category><category>SharePoint</category><category>RCE</category><category>Machine Keys</category><category>Persistence</category><category>Microsoft</category></item><item><title>WordPress RCE and SonicWall Zero-Days: Weekly Threat Intel Update</title><link>https://runtimerebel.com/blog/wordpress-rce-and-sonicwall-zero-days-weekly-threat-intel-update</link><guid isPermaLink="true">https://runtimerebel.com/blog/wordpress-rce-and-sonicwall-zero-days-weekly-threat-intel-update</guid><description>Active exploitation of WordPress RCE and SonicWall zero-day vulnerabilities highlights critical risks for internet-facing systems. Learn how to mitigate.</description><pubDate>Mon, 20 Jul 2026 14:11:23 GMT</pubDate><category>WordPress</category><category>SonicWall</category><category>SharePoint</category><category>RCE</category><category>Zero-Day</category></item><item><title>CVE-2026-58644: SharePoint RCE Zero-Day Exploited in the Wild</title><link>https://runtimerebel.com/blog/cve-2026-58644-sharepoint-rce-zero-day-exploited-in-the-wild</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-58644-sharepoint-rce-zero-day-exploited-in-the-wild</guid><description>CISA adds CVE-2026-58644, a critical Microsoft SharePoint Server deserialization RCE vulnerability with a CVSS 9.8, to its Known Exploited Vulnerabilities catalog.</description><pubDate>Fri, 17 Jul 2026 09:58:24 GMT</pubDate><category>CVE-2026-58644</category><category>SharePoint</category><category>Microsoft</category><category>CISA KEV</category><category>RCE</category></item><item><title>Microsoft SharePoint RCE via CVE-2024-38094: Mitigation Guide</title><link>https://runtimerebel.com/blog/microsoft-sharepoint-rce-via-cve-2024-38094-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-sharepoint-rce-via-cve-2024-38094-mitigation-guide</guid><description>CISA adds three exploited SharePoint vulnerabilities to the KEV catalog, including CVE-2024-38094. Learn how to detect and mitigate these critical RCE flaws.</description><pubDate>Wed, 15 Jul 2026 17:22:02 GMT</pubDate><category>CVE-2024-38094</category><category>CVE-2024-43461</category><category>CVE-2023-24955</category><category>SharePoint</category><category>CISA KEV</category></item><item><title>CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-45659-sharepoint-rce-via-deserialization-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-45659-sharepoint-rce-via-deserialization-patch-now</guid><description>Microsoft addresses CVE-2026-45659, a high-severity RCE flaw in SharePoint Server caused by untrusted data deserialization. Learn how to mitigate this risk.</description><pubDate>Tue, 26 May 2026 13:10:28 GMT</pubDate><category>CVE-2026-45659</category><category>SharePoint</category><category>RCE</category><category>Microsoft</category><category>Deserialization</category></item><item><title>BlackFile: Analyzing UNC6671 Vishing &amp; Cloud Data Extortion</title><link>https://runtimerebel.com/blog/blackfile-analyzing-unc6671-vishing-cloud-data-extortion</link><guid isPermaLink="true">https://runtimerebel.com/blog/blackfile-analyzing-unc6671-vishing-cloud-data-extortion</guid><description>Examines UNC6671&apos;s BlackFile vishing, AiTM, and cloud data exfiltration tactics against Microsoft 365 &amp; Okta. Actionable mitigations included.</description><pubDate>Fri, 15 May 2026 20:32:33 GMT</pubDate><category>UNC6671</category><category>BlackFile</category><category>Vishing</category><category>AitM</category><category>Microsoft 365</category><category>Okta</category><category>SharePoint</category><category>OneDrive</category><category>Data Exfiltration</category><category>Extortion</category><category>Social Engineering</category></item><item><title>SharePoint Zero-Day Fixed in Microsoft April 2026 Security Updates</title><link>https://runtimerebel.com/blog/sharepoint-zero-day-fixed-in-microsoft-april-2026-security-updates</link><guid isPermaLink="true">https://runtimerebel.com/blog/sharepoint-zero-day-fixed-in-microsoft-april-2026-security-updates</guid><description>Microsoft addresses 169 vulnerabilities, including an actively exploited SharePoint zero-day. Learn how to secure your environment against these flaws.</description><pubDate>Wed, 15 Apr 2026 12:29:13 GMT</pubDate><category>Microsoft</category><category>SharePoint</category><category>Zero-Day</category><category>RCE</category><category>Patch Tuesday</category></item><item><title>CVE-2024-38094: SharePoint RCE Exploited in the Wild — Patch Now</title><link>https://runtimerebel.com/blog/cve-2024-38094-sharepoint-rce-exploited-in-the-wild-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-38094-sharepoint-rce-exploited-in-the-wild-patch-now</guid><description>CISA adds CVE-2024-38094 to its KEV catalog after active exploitation of a SharePoint RCE vulnerability. Learn how to detect and remediate this threat.</description><pubDate>Thu, 19 Mar 2026 12:20:35 GMT</pubDate><category>CVE-2024-38094</category><category>Microsoft</category><category>SharePoint</category><category>CISA</category><category>RCE</category></item><item><title>CISA KEV Update: CVE-2025-66376 Zimbra and SharePoint Exploits</title><link>https://runtimerebel.com/blog/cisa-kev-update-cve-2025-66376-zimbra-and-sharepoint-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-cve-2025-66376-zimbra-and-sharepoint-exploits</guid><description>CISA warns of active exploitation for Zimbra CVE-2025-66376, SharePoint flaws, and Cisco zero-days used in ransomware attacks. Secure your systems now.</description><pubDate>Thu, 19 Mar 2026 08:18:30 GMT</pubDate><category>CVE-2025-66376</category><category>Zimbra</category><category>SharePoint</category><category>CISA KEV</category><category>Cisco</category><category>Ransomware</category></item></channel></rss>