Una falla critica nei server SharePoint on-premise, la CVE-2026-50522, � sotto attacco attivo: gli hacker rubano le chiavi macchina per forgiare token d'accesso e restare dentro i sistemi anche dopo la patch di Microsoft

watchTowr reports active exploitation of SharePoint CVE-2026-50522 after a public PoC, with attackers stealing machine keys for persistence.

Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after affected servers are patched.