search
Symantec
Trends
- 1SVG phishing attacks surge, Symantec warns●SVG phishing attacks jumped in August 2026. Symantec explains how SVG smuggling hides fake logins and malware inside ima
Symantec reports a sharp rise in phishing attacks using SVG image files in August 2026. Attackers embed fake login pages and malware inside SVG files smuggled through email attachments, bypassing conventional detection because the files look like harmless images. Symantec has published guidance on how the technique works and what defences organisations should deploy against it.
- 2China-linked Warlock hackers exploit SharePoint flaws in ransomware attacks●🤖 China-linked actor Warlock is weaponizing Microsoft SharePoint flaws to disable security tooling and deploy ransomware
Researchers at Symantec and Carbon Black report that the China-linked group Warlock is exploiting Microsoft SharePoint vulnerabilities to disable security tools and deploy ransomware. At least four organisations have been attacked, including two critical infrastructure operators, in Portuguese- and Spanish-speaking countries. The campaign highlights growing use of legitimate enterprise software flaws by state-aligned ransomware crews.
- 3China-linked Warlock group keeps exploiting SharePoint flaws●🤖 China-linked actor Warlock is still exploiting Microsoft SharePoint flaws, both old and new, to disable security tools
Symantec's Carbon Black unit reports that Warlock, a China-linked threat actor, continues to exploit both patched and newly disclosed Microsoft SharePoint vulnerabilities to disable security tools and deploy ransomware. Targets include critical infrastructure, government bodies and educational organisations in Portuguese- and Spanish-speaking countries. Security teams are urged to patch SharePoint servers and monitor for attempts to tamper with endpoint protection.