sansisc cover
ISC Stormcast For Thursday, January 8th, 2026 https://isc.sans.edu/podcastdetail/9758, (Thu, Jan 8th)
8 January 2026
docusign phishing scams
Credential stuffing: What it is and how to protect yourself
8 January 2026

Resources

CISA Flags Microsoft Office and HPE OneView Bugs as Actively Exploited

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security flaws impacting Microsoft Office and Hewlett Packard Enterprise (HPE) OneView to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerabilities are listed below –

CVE-2009-0556 (CVSS score: 8.8) – A code injection vulnerability in Microsoft Office

Related resources