chiprook
← Security
SecurityOctober 4, 2026, 14:49

Warlock ransomware still exploits year-old SharePoint flaws

Symantec links the Longlegs group (Storm-2603) behind Warlock ransomware to attacks on water utilities, telecoms, governments and universities via unpatched SharePoint ToolShell flaws. At least four organizations in Portuguese- and Spanish-speaking countries were hit in two months.

Warlock ransomware still exploits year-old SharePoint flaws
#Symantec#SharePoint#Microsoft
Read next
Security

Warlock ransomware spread via SYSVOL after SharePoint compromise

Security

CISA: ransomware gangs now exploiting critical TeamCity flaw

Security

Warlock Ransomware Hits Major Spanish, Portuguese Organizations

Security

16-year-old suspected leader of KillSec ransomware group arrested