SharePoint Server zero-day actively exploited: CISA warns of IIS key theft to survive patches
Attackers are actively exploiting vulnerabilities in on-premises SharePoint Server to gain Farm Administrator rights and steal IIS machine keys to maintain access even after applying a patch.
Aug 25, 2026 4 1










