Hackers abused a Microsoft SQL Server to run commands, steal credentials and source code, and move files in a Viva Aerobus-linked attack.
An exposed attacker server containing an MSSQL-focused post-exploitation toolkit, credential-harvesting artifacts, and stolen ...
Microsoft's September Patch Tuesday fixes a record 974 flaws, two already exploited and 20 wormable. What to patch first, and why AI is behind it.
Microsoft released its largest security update in company history on September 8, 2026, closing 966 vulnerabilities across Windows, Office, Exchange Server, SQL Server, and Azure in a record-breaking ...
在一次与 Viva Aerobus 环境相关的入侵事件中,攻击者将一台 Microsoft SQL Server 改造成了执行系统命令、回传窃取文件的通道。而他们自用的那台可公开访问的服务器,随后把攻击工具和被盗材料暴露给了无关的互联网用户。