CISA says SaaS providers in firing line after Commvault zero-day Azure attack https://t.co/POiLnKj7LX
A @Google Chrome vulnerability allowing the leak of OAuth codes was added to the Known Exploited Vulnerabilities catalog by the @CISAgov. #cybersecurity #infosec #ITsecurity https://t.co/uZLaKGc3aK
CISA Warns of Suspected Broader SaaS Attacks Exploiting App Secrets and Cloud Misconfigs https://t.co/B3RAViOGkW
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently added several vulnerabilities to its Known Exploited Vulnerabilities catalog, highlighting an increase in cyber threats targeting software-as-a-service (SaaS) applications and cloud environments. Among the newly listed flaws is a vulnerability in Samsung MagicINFO 9 Server. Additionally, CISA issued an advisory concerning cyber threat activity targeting Commvault’s Metallic SaaS cloud application, which involved exploitation of CVE-2025-3928 leading to the compromise of Microsoft 365 credentials. This incident is part of a broader campaign exploiting default configurations and excessive permissions in SaaS applications. Furthermore, a Google Chrome vulnerability that allows the leakage of OAuth codes has also been added to the catalog. CISA warns that SaaS providers are increasingly targeted due to app secrets exposure and cloud misconfigurations, emphasizing the need for improved security measures in cloud and SaaS environments.