Critical Microsoft SharePoint flaw now exploited in attacks

0

Microsoft SharePoint

A critical Microsoft SharePoint vulnerability patched in January is now being exploited in attacks, the Cybersecurity and Infrastructure Security Agency (CISA) warned.

Tracked as CVE-2026-20963, this security flaw affects SharePoint Enterprise Server 2016, SharePoint Server 2019, and SharePoint Server Subscription Edition.

SharePoint Server 2007, SharePoint Server 2010, and SharePoint Server 2013 are also vulnerable to attacks but are end-of-support and no longer receive security updates. Admins are advised to upgrade end-of-support SharePoint Server versions to a supported version to block attacks.

Successful exploitation enables threat actors without privileges to achieve remote code execution on unpatched servers in low-complexity attacks that exploit a deserialization of untrusted data weakness.

“In a network-based attack, an unauthenticated attacker could write arbitrary code to inject and execute code remotely on the SharePoint Server,” Microsoft said when it patched the vulnerability as part of its January 2026 Patch Tuesday.

While Microsoft updated its CVE-2026-20963 advisory this Tuesday, the company has yet to flag it as exploited in the wild.

However, CISA added the security flaw to its catalog of actively exploited vulnerabilities and ordered Federal Civilian Executive Branch (FCEB) agencies to secure their servers by Saturday, March 21.

FCEB agencies are non-military U.S. executive branch agencies, such as the Department of Homeland Security, the Department of Energy, the Department of Justice, and the Department of State.

CISA didn’t provide further information on these ongoing CVE-2026-20963 attacks and has yet to find any evidence that it’s being exploited in ransomware attacks.

Even though BOD 22-01 targets only federal agencies, CISA “strongly” urged all network defenders to patch their devices against exploitation of CVE-2025-40551 as soon as possible.

“This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise,” CISA warned.

“Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.”

On Wednesday, CISA also ordered federal agencies to patch a stored cross-site scripting (XSS) weakness in the Zimbra Collaboration Suite (ZCS) that is now exploited in the wild.

Malware is getting smarter. The Red Report 2026 reveals how new threats use math to detect sandboxes and hide in plain sight.

Download our analysis of 1.1 million malicious samples to uncover the top 10 techniques and see if your security stack is blinded.



Source link

Member of gang behind UK’s biggest cash robbery approved for release from jail | UK News

0

A member of the Securitas heist gang that stole £53m in Britain’s biggest-ever cash robbery should be released from prison, the Parole Board says.

Lea Rusha – disguised with prosthetics and a fake ginger beard – was one of two men who posed as police officers to kidnap Colin Dixon, the manager of the depot in Tonbridge, Kent, and his family.

A masked gang tied up staff at gunpoint before loading £53m in cash into a 7.5-tonne lorry in February 2006.

Lea Rusha. Pic: Kent Police
Image: Lea Rusha. Pic: Kent Police

Last month, on the 20th anniversary of the raid, Kent police said the robbery remains a live investigation, with more than £30m still unaccounted for.

Rusha, now 53, was found guilty of conspiracy to robbery, conspiracy to commit kidnapping, and conspiracy to possess a firearm along with four other men at the Old Bailey in 2008.

Mastermind Lee Murray, a former cage fighter, was jailed in Morrocco, while Paul Allen was jailed after being extradited back to the UK from the country.

Britain's biggest ever cash robbery. Pic: PA
Image: Britain’s biggest ever cash robbery. Pic: PA

Rusha was handed an indefinite sentence with a minimum term of 15 years and was first released released in June 2024 but recalled in December that year after breaching his licence conditions.

After a private hearing last month the Parole Board said he should be released from prison under stringent licence conditions.

Read more from Sky News:
Exclusive poll reveals what people think of UK police
‘Incredibly brave’ man traps robber in shop

“After considering the circumstances of his offending and time on licence, the progress made while in custody and the evidence presented at the hearing, the panel was satisfied that imprisonment was no longer necessary for the protection of the public,” a summary of the decision said.

“The panel considered that Mr Rusha had made substantial progress during his sentence. It did not find all his evidence to be convincing, but it determined that he met the test for release as set out under the law.”

Paul Allen was jailed for 18 years over the Securitas heist. Pic: PA
Image: Paul Allen was jailed for 18 years over the Securitas heist. Pic: PA

Last year, three men were found guilty of plotting to murder Allen after he was released from his 18-year prison sentence.

Allen was left paralysed from the chest down after he was shot twice as he stood in the kitchen of his home in Woodford, east London, on 11 July 2019.



Source link

Bob Barker had suicidal thoughts after wife’s death, producer says

0

NEWYou can now listen to Fox News articles!

Bob Barker, longtime host of “The Price Is Right,” allegedly went through some major personality changes after the death of his wife, Dorothy Jo Gideon, in 1982. 

In E!’s documentary series “Dirty Rotten Scandals,” those closest to Barker at the time opened up about the sudden shift in attitude and the mental health challenges the TV personality experienced amid his grief. 

“{Bob and Dorothy Jo] went to Hawaii in August and she was diagnosed with lung cancer and died two months later,” Barbara Hunter, a former producer on the game show, said in the episode. “Bob really went into a funk after that. He was ready to take his own life. That’s what he shared with me.”

FORMER ‘PRICE IS RIGHT’ MODEL EXPOSES DARK TRUTH ABOUT BOB BARKER ERA

Bob Barker

Bob Barker allegedly had suicidal thoughts after the death of his wife Dorothy Jo in 1982.  (Getty Images)

“He went through a lot of changes,” Holly Hallstrom — a former model who showcased prizes as one of “Barker’s Beauties” — told Fox News Digital ahead of the premiere. “At first, he was grieving, so that was a big change. It was very somber on the set, much more somber. But then, after that, it just became like you were living in Barkerland, where he was the supreme ruler of the universe and not in a good way.”

The pair were married for 36 years until Gideon’s death from lung cancer in 1982 at the age of 56. Two years later, Barker began dating Nancy Burnet, whom he remained with until his death in 2023.

Elsewhere in the documentary, Hallstrom detailed the hostile work environment, sexual harassment and discrimination she witnessed during her time on the show. 

Hallstrom appeared on the show from 1977 until she was fired in 1995, a decision she has said was blamed on weight gain caused by medication. However, Hallstrom alleges she was actually dismissed after declining to publicly support Barker when fellow model Dian Parkinson filed a sexual harassment lawsuit against him in 1994.

LIKE WHAT YOU’RE READING? CLICK HERE FOR MORE ENTERTAINMENT NEWS

Holly Hallstrom, Bob Barker and another "Barker Beauty" smiling together at a book function.

Holly Hallstrom, Bob Barker and Janice Pennington attend the party to celebrate Pennington’s book, “Husband, Lover, Spy,” on Jan. 13, 1994, at Spago in West Hollywood. Hallstrom was fired in 1995. (Ron Galella, Ltd./Ron Galella Collection via Getty Images)

Barker consistently denied wrongdoing and maintained that any relationships were consensual.

“I want people to know the whole story, not just Barker’s side of it,” Hallstrom told Fox News Digital. “After all these years, people who have only heard one side are going to hear the other side, and our side is court-documented testimony. You can’t argue against that.”

Hallstrom said that was the moment when “everything got really bad.”

“I thought the whole situation, all the publicity, all the media attention, I thought it was horrible. I thought it was tacky. I was glad [co-creator] Mark Goodson had died [in 1992]. He would’ve been mortified to see that kind of tacky scandal on what was a family show,” said Hallstrom. 

Bob Barker Emmy award

Bob Barker hosted “The Price Is Right” for 35 years.  (Getty Images)

“I didn’t want to be involved in it at all,” said Hallstrom. “Barker wanted us to go on all these talk shows and say he was the victim and that Dian was lying. I didn’t participate because I didn’t want to, and I thought it was tacky. And also because I could not honestly say, ‘Oh yes, Dian is lying,’ or ‘Oh no, Dian is not lying.’ I was not present for those conversations.”

CLICK HERE TO SIGN UP FOR THE ENTERTAINMENT NEWSLETTER

Parkinson dropped her lawsuit in 1995. At the time, her attorney said the legal battle had become too emotionally and financially draining, while impacting her physical health. Barker maintained that their relationship was consensual.

Today, Hallstrom doesn’t watch old clips of herself, a reminder of a chapter she now views very differently. Even so, she says she has no regrets about taking the chance and auditioning for the show.

Bob Barker spins the wheel on The Price is Right

Barker earned 19 Emmys during his time with “The Price is Right.” (Jesse Grant)

“I see myself, and I see someone who is trying so hard to appear graceful and poised like a professional model,” she said. “But I also see a young woman who was having a wonderful time entertaining people. And those were the happiest parts of my work, those hours when we were shooting in front of the audience.”

“No matter what was happening backstage, I still felt the happiness of the audience,” she said. “And to be in that position, to bring people happiness, is a gift. It was worth everything that was happening backstage.”

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Barker hosted the iconic game show for 35 years and became executive producer of the series in 1988. He won 19 Daytime Emmy Awards for outstanding game show host, more than any other emcee. Barker also won four Emmys as the executive producer of the series, which is still the longest-running game show in history. 

After a 50-year career in television, Barker retired from hosting “The Price is Right” in 2007. He returned to the show three times after his retirement, including a 2013 appearance when he celebrated his 90th birthday. 



Source link

Access Denied

0

Access Denied You don’t have permission to access “http://hindi.news18.com/news/ajab-gajab/viral-what-to-eat-drink-nuclear-emergency-uk-government-issue-food-advisory-list-10288947.html” on this server.

Reference #18.49200117.1773952159.e39e890

https://errors.edgesuite.net/18.49200117.1773952159.e39e890

Market correction opens ‘tremendous opportunity’ for FPIs: SEBI WTM

0

Kamlesh Chandra Varshney, Whole Time member Securities and Exchange Board of India (SEBI)

Kamlesh Chandra Varshney, Whole Time member Securities and Exchange Board of India (SEBI) | Photo Credit: DEBASISH BHADURI

Recent corrections in Indian equities amid geopolitical tensions have made valuations “quite attractive,” creating a “tremendous opportunity” for foreign portfolio investors (FPIs) to increase allocations, said Kamlesh Chandra Varshney, whole-time member, Securities and Exchange Board of India (SEBI).

“There is a tremendous opportunity to invest in Indian equity markets with the kind of correction which has taken place now in the last few months, particularly after the war that has broken out,” Varshney said at a Russia-India forum on capital market integration at the National Stock Exchange (NSE).

His comments come even as FPIs have remained net sellers so far in FY26, with over ₹77,000 crore of outflows reported in the first half of March amid global volatility linked to the West Asia conflict.

Varshney said the regulator would work with stakeholders to ease procedural and technical bottlenecks for Russian investors and may consider setting up dedicated working groups to address specific requirements.

He also encouraged Russian companies to tap Indian markets through local listings. “We have seen some companies who have done that and their subsidiary’s valuation in India is more than the valuation of their parent company overseas,” he said, highlighting the potential for better valuation outcomes.

At present, 23 Russian entities, including banks and financial institutions, are registered as FPIs in India, with access to both equity and debt markets.

Ashishkumar Chauhan, Managing Director and CEO, NSE, said India offers a broader proposition for global issuers. “For Russian issuers, the proposition is broader still, because India’s markets can offer not only access to capital, but also the possibility of stronger valuation outcomes. India’s capital markets are not only financing growth at home, but are also becoming an increasingly important channel for long-term international economic engagement,” he said.

Chauhan added that the India-Russia financial partnership needs to translate into a more practical market architecture.

At the same event, Sergey Glazyev, State Secretary of the Union State of Russia and Belarus, called for a shift in the global financial system. “We should create a new financial architecture which is based on national currency and international transparency and trust to each other,” he said.

Sriram Krishnan, Chief Business Development Officer, NSE, said Russian firms could also explore fundraising through listings at GIFT City, Gujarat and consider setting up banking presence in the international financial services hub.

Separately, Varshney said SEBI is working with market participants on technology-led solutions to ease access and reduce the cost of doing business, widening participation in the securities market ecosystem.

Published on March 19, 2026

Hegseth says no ‘timeframe’ for war on Iran as Pentagon asks for $200bn | US-Israel war on Iran News

0

Defense Secretary Pete Hegseth hints war funding may change, leaving timeline decisions to President Trump.

The Pentagon is seeking an additional $200bn from Congress to fund the United States-Israel war with Iran, a conflict Defense Secretary Pete Hegseth warns has no “timeframe” for ending.

Asked about the figure on Thursday, Hegseth did not directly confirm the amount but said that it could change.

Recommended Stories

list of 3 itemsend of list

“As far as $200bn, I think that number could move. Obviously, it takes money to kill bad guys,” Hegseth said. “We’re going back to Congress and folks there to ensure that we’re properly funded for what’s been done, for what we may have to do in the future.”

The Associated Press and Washington Post reported that the US Department of Defense had requested the sum from the White House.

It’s an extraordinarily high number and comes on top of extra funding the Defense Department already received last year as part of President Donald Trump’s July tax-cuts bill. Such a request would need to be approved by Congress, and it is not at all clear that such spending would have political support.

Congress has been bracing for a new spending request, but it is not yet clear whether the White House has transmitted the proposal for a war that Hegseth declined to provide a timeline for ending.

“We wouldn’t want to set a definitive timeframe,” Hegseth told a news conference, adding that “we’re very much on track” and that Trump will be the one to decide when to stop.

“It will be at the president’s choosing, ultimately, where we say, ‘Hey, we’ve achieved what we need to.’”

Congress, however, has not authorised the war and is showing growing unease with the military operation’s scope and strategy.

Congress is controlled by the president’s Republican Party, but many of the more conservative lawmakers are also fiscal hawks, with little political appetite for big spending, on military operations or other matters. Most Democrats are likely to reject such a request and demand more detailed plans for military strategy and goals.

The requested amount would be a sizable boost to the Pentagon’s annual budget, which Congress approved at more than $800bn for the current fiscal year.

That is on top of some $150bn that Congress gave the Defense Department in last year’s tax-cuts bill, much of it for specific projects and overall upgrades to the Pentagon’s operations.

While some of the military’s biggest champions on Capitol Hill have welcomed new spending as a way to upgrade the US defence capabilities in the face of emerging threats, others will certainly point to healthcare and other domestic needs that they view as more important priorities.

Top US military officer General Dan Caine, who spoke alongside Hegseth, provided details on weapons being used against Iran and its allied forces in the region.

Caine said A-10 Warthogs – a type of aircraft designed for providing close air support – are “hunting and killing fast-attack watercraft” in the Strait of Hormuz waterway, a key trade artery which Iran effectively closed to maritime traffic following the start of the war.

He also said AH-64 Apaches are being used in Iraq to target Iran-aligned militia groups there, and that some US allies have begun using the attack helicopters to counter one-way drones launched by Tehran’s forces.



Source link

US military taking aim at ‘Iranian-aligned militia groups’ in Iraq, Caine says

0

NEWYou can now listen to Fox News articles!

Chairman of the Joint Chiefs of Staff Gen. Dan Caine said the U.S. military is striking “Iranian-aligned militia groups” in Iraq as Secretary of War Pete Hegseth vowed Thursday to “honor” the sacrifice of six U.S. service members killed in a plane crash there last week. 

President Donald Trump, Hegseth and Caine on Wednesday attended the dignified transfer of the six fallen soldiers at Dover Air Force Base in Delaware. The Pentagon said last week that the U.S. forces were killed when a KC-135 refueling aircraft crashed in western Iraq during a combat mission in support of Operation Epic Fury. 

Caine said Thursday that in Iraq, AH-64 helicopters “have been striking against Iranian-aligned militia groups to make sure that we suppress any threat in Iraq against U.S. forces or U.S. interests.” 

“And we remain focused on pursuit of any platform that Iran could field to harm Americans or our partners,” he added.

TRUMP THREATENS KEY IRANIAN GAS FIELD AFTER ISRAELI STRIKE

Pete Hegseth and Dan Caine

Secretary of Defense Pete Hegseth and Chairman of the Joint Chiefs of Staff Gen. Dan Caine speak during a news conference at the Pentagon in Washington, D.C., on Thursday, March 19, 2026.  (Mandel Ngan/AFP via Getty Images)

Reflecting on the fallen U.S. service members, Hegseth said, “Yesterday at Dover Air Force Base, President Trump, the chairman, and I stood in solemn silence as heroes came home.” 

“Flag-draped caskets. We honored them. We grieved with their families, and we listened. What I heard through tears, through hugs, through strength and through unbreakable resolve was the same from family after family. They said, ‘finish this. Honor their sacrifice. Do not waver. Do not stop until the job is done.’ My response, along with that of the president, was simple — of course, we will finish this. We will honor their sacrifice,” Hegseth said. 

“Yesterday’s ceremony reminded us why we fight. Not for nation building or democracy promotion, but to crush direct threats to America, Americans, and our interests. We fight to win, and we are winning, on our terms, following our objectives,” he continued.

12 ARAB AND ISLAMIC COUNTRIES UNITE TO CONDEMN ‘HEINOUS’ IRANIAN ATTACKS

Secretary of War Pete Hegseth salutes at Dover Air Force Base

Secretary of War Pete Hegseth salutes, as he and President Donald Trump arrive at Dover Air Force Base in Dover, Delaware, on Wednesday, March 18, 2026.  (Kylie Cooper/Reuters)

“My 13-year-old son popped into my office last night while I was editing these remarks. He asked about the war and the families I met at Dover, and I looked at him and I said, ‘They died for you, son, so that your generation doesn’t have to deal with a nuclear Iran’,” Hegseth also said. “It’s the truth. And they did. So to the families who said, ‘finish this,’ we will. And I say the same to every American who wants peace through strength. May Almighty God continue to bless our troops in this fight. And again to the American people, please pray for them, every day, on bended knee, with your family, in your schools, in your churches, in the name of Jesus Christ. To the troops, keep going and Godspeed.” 

Those killed were Maj. John “Alex” Klinner, 33; Maj. Ariana Savino, 31; Tech. Sgt. Ashley Pruitt, 34; Capt. Seth Koval, 38; Capt. Curtis Angst, 30; and Master. Sgt. Tyler Simmons, 28.

kc-135 refueling tanker

A U.S. Air Force KC-135 Stratotanker refueling tanker aircraft takes off from the Kadena Air Base, west of Okinawa, southern Japan, in August 2023. (Hiro Komae/AP)

CLICK HERE TO GET THE FOX NEWS APP 

Caine said at the Pentagon Thursday that, “Our nation will never forget their sacrifice, and we will never forget their names,” and, “Our entire joint force mourns with you today.” 

Fox News Digital’s Bradford Betz contributed to this report. 



Source link

Latest Vivaldi release tucks its UI away until summoned • The Register

0

Browser maker Vivaldi has opened up a new front in the browser wars by making itself disappear.

Vivaldi browser showing content without window cruft

Vivaldi browser showing content without window cruft

It’s a simple concept – hit the auto-hide icon (or use the keyboard shortcut) and all the browser fluff disappears. Move the mouse pointer to the edges of the window, and it comes back. It’s rather like the Windows function that automatically hides the taskbar, which frees a little screen real estate until the cursor makes the taskbar slither back into view.

Full-screen browsing is frequently used to hide the more prosaic origins of kiosk applications, but Vivaldi’s approach makes the process more suited to desktop users. A spokesperson told The Register: “It works in both full screen and restored/normal window.” There’s also a setting to limit the feature to full-screen mode – another checkbox in Vivaldi’s ever-expanding settings arsenal.

The spokesperson told us: “This feature has been developed to give our users maximum real estate for control, without losing the controls they would like to have available.”

There are obviously some security implications, not least the fact that the URL is completely hidden, which means that it might not always be clear which website is loaded. Not all of the expected bits disappear either. Scrollbars, for example, depend on the site being viewed.

It’s certainly a neat feature and the most notable of the 7.9 release, yet it won’t be to everybody’s taste. Then again, like the rest of the browser’s options, it doesn’t have to be used and isn’t pushed into the user’s face.

Vivaldi said: “As always, we’re shipping with No AI. No tracking. No BS. Just the web, edge to edge. Or Vivaldi to Vivaldi.” We see what you did there.

The release also includes a new option, “Open Link as Tiled Follower Tab,” which opens a tiled page alongside the current tab. Any further links open in the follower tab. There’s also the ability to open the mail composer in its own window, along with several other email tweaks.

Vivaldi uses the Chromium rendering engine, but what surrounds it is up to the Norway and Iceland-based company. Rather than force AI onto users or collect customer data for commercial purposes, Vivaldi – which claims four million users – is focusing on features aimed at improving the browsing experience. Those who don’t want them can simply ignore them. ®



Source link

Death toll surpasses 1,000 in Lebanon as Israeli bombardment continues | Israel attacks Lebanon News

0

At least 40 medical workers among those killed as rights groups urge Israel to end attacks on Lebanon health facilities.

More than 1,000 people have been killed in intensified Israeli attacks across Lebanon this month, according to local authorities, as the United Nations and other rights groups say Israel’s bombardment of the country may amount to war crimes.

The Lebanese Ministry of Health said on Thursday that Israeli attacks have killed 1,001 people in Lebanon since March 2, including 79 women, 118 children and 40 healthcare workers. More than 2,584 people have been wounded.

Recommended Stories

list of 3 itemsend of list

Israeli attacks on Lebanon intensified in early March after Lebanese armed group Hezbollah launched rockets into northern Israel in response to the killing of Iranian Supreme Leader Ayatollah Ali Khamenei on February 28, the first day of the US-Israeli war on Iran.

The Israeli bombardment has forced more than one million people out of their homes across the country’s south and several parts of the capital, Beirut.

Israel’s military has bombed residential buildings and other infrastructure, and launched a widening ground operation in southern Lebanon, in a campaign that it says is targeting Hezbollah.

The Lebanese armed group has responded by firing barrages of rockets into northern Israel and engaging Israeli forces on the ground in the south.

Earlier this week, a spokesperson for UN human rights chief Volker Turk said some of the Israeli attacks may amount to war crimes.

“International humanitarian law demands distinction between military targets and civilians and civilian objects and insists on feasible precautions being taken to protect civilians. Deliberately attacking civilians or civilian objects amounts to a war crime,” the spokesperson said.

That message was echoed on Thursday by Amnesty International, which urged Israel to halt its attacks on Lebanese healthcare workers and facilities.

“Healthcare workers are risking their lives to save others, and hospitals, other medical facilities and ambulances are specifically protected under international humanitarian law,” said Kristine Beckerle, the rights group’s deputy regional director for the Middle East and North Africa.

Beckerle also noted that Israel’s claim, without evidence, that Hezbollah has been using ambulances for military purposes “does not justify treating hospitals, medical facilities or medical transport as battlefields or treating doctors and paramedics as targets”.

“Deliberately striking medics performing their humanitarian functions is a serious violation of international humanitarian law and could constitute a war crime,” she said in a statement.



Source link

Teenage boy dies after blaze in flat next to Old Kent Road Fire Station in London | UK News

0


A teenage boy has died after a flat fire in south London, that broke out next to a fire station.

Four fire engines and around 25 personnel tackled the blaze on the first floor of a six-storey building in Cooper’s Road, Southwark, on Wednesday.

One teenage boy made it out of the property before firefighters arrived and was taken to hospital, while another died at the scene, London Fire Brigade (LFB) said.

The fire broke out next to Old Kent Road Fire Station, with the first call received just before 3pm.

Crews from Dockhead, Dowgate, Shadwell and Whitechapel fire stations went to the scene and the blaze was under control just after 4.30pm.

A 64-metre turntable ladder appliance from Old Kent Road Fire Station was on the scene within six minutes of the call, an LFB spokesperson said.

The spokesperson added: “Another appliance from Old Kent Road was out at a different incident but did return to the scene of the incident later.”

The cause Is being investigated by the LFB and Metropolitan Police.



Source link