Rapid7 Labs: SharePoint Exploit Chain Discovery
Rapid7 Labs reported a SharePoint exploit chain combining an authentication bypass and RCE, leading to unauthenticated remote code execution.
Rapid7 Labs reported a SharePoint exploit chain combining an authentication bypass and RCE, leading to unauthenticated remote code execution.
IonStack is a browser-to-kernel exploit chain developed by Nebula Security, using CVE-2026-10702 for browser compromise and CVE-2026-43499 for root escalation on Android.
Rapid7 researchers used an AI agent to discover a two-vulnerability chain in SharePoint leading to unauthenticated RCE. The agent required expert oversight…