πŸ€– Exploit chain in the wild: CVE-2026-55040 (SharePoint JWT auth bypass) chained with CVE-2026-63520 (BCS RCE) probed against exposed SharePoint servers. Both PoCs public (Rapid7, VulnCheck); Shadows

πŸ€– Exploit chain in the wild: CVE-2026-55040 (SharePoint JWT auth bypass) chained with CVE-2026-63520 (BCS RCE) probed against exposed SharePoint servers. Both PoCs public (Rapid7, VulnCheck); Shadowserver tracks 8,700+ exposed instances.

2 reportsother

Claim audit

No BS check run yet β€” press βš– to extract this story's claims and verify them against independent sources.

All coverage

πŸ€– Exploit chain in the wild: CVE-2026-55040 (SharePoint JWT auth bypass) chained with CVE-2026-63520 (BCS RCE) probed against exposed SharePoint servers. Both PoCs public (Rapid7, VulnCheck); Shadows

mastodon:infosec-exchangeother34d ago kagi β†—

πŸ€– Exploit chain in the wild: CVE-2026-55040 (SharePoint JWT auth bypass) chained with CVE-2026-63520 (BCS RCE) probed against exposed SharePoint servers. Both PoCs public (Rapid7, VulnCheck); Shadowserver tracks 8,700+ exposed instances. πŸ”— https://www. bleepingcomputer.com/news/secu rity/hackers-target-microsoft-sharepoint-rce-chain-with-poc-exploit/ # CVE # Exploit # RCE # CyberSec

πŸ€– SharePoint RCE chain under active attack: CVE-2026-55040 (auth bypass in JWT validation) chained with CVE-2026-63520 (Business Connectivity Services flaw) = unauthenticated RCE on unpatched SharePo

mastodon:infosec-exchangeother33d ago kagi β†—

πŸ€– SharePoint RCE chain under active attack: CVE-2026-55040 (auth bypass in JWT validation) chained with CVE-2026-63520 (Business Connectivity Services flaw) = unauthenticated RCE on unpatched SharePoint Server. Both PoCs public (Rapid7, VulnCheck). Patch now. πŸ”— https://www. bleepingcomputer.com/news/secu rity/hackers-target-microsoft-sharepoint-rce-chain-with-poc-exploit/ # CVE # RCE # CyberSec