Print to PDF: Ctrl+P → Destination: Save as PDF → Margins: None → Background graphics: On

#CyberWeekly
WEEK 21 · MAY 15 - MAY 21, 2026
Open Mail
An Outlook Web Access zero-day turns an opened email into a hijacked mailbox. Mitigations only — no permanent patch yet.
Outlook Web Access zero-day: read becomes run
Platform: evidence uploads + smarter integrations
ECP on the Cybersec Europe main stage
Microsoft 365 password-reset turned into a back door
Belgian patch week: nginx, Cisco, Palo Alto, Portainer
CCB ships a 'First Aid' incident playbook
Easy Cyber Protection
#CyberWeekly · Week 21
1/6

Open mail, open inbox: Outlook Web Access zero-day actively exploited (CVE-2026-42897)

Microsoft confirmed on May 14 that CVE-2026-42897 — a cross-site-scripting flaw in Outlook Web Access on on-premises Exchange Server 2016, 2019, and…

Centre for Cybersecurity Belgium advisory → https://ccb.belgium.be/advisories/warning-cross-site-scripting-microsoft-exchange-server-can-be-exploited-perform-spoofing

#CyberWeekly · Week 21
2/6

Platform Spotlight: evidence uploads ship end-to-end, integrations get bounded and tier-aware

Five things shipped that change how an MSP runs an engagement: a long-asked-for upload, a smarter integration data lifecycle, sharper endpoint cards,…

Try the live demo → https://easycyberprotection.com/demo

#CyberWeekly · Week 21
3/6

Easy Cyber Protection on the Cybersec Europe 2026 main stage — pitched, jury deliberating

On Tuesday May 20 at Brussels Expo, Easy Cyber Protection's pitch for the Cybersec Europe 2026 "Best Cybersecurity Innovation Europe" jury award was delivered…

Cybersec Europe 2026 → https://www.cyberseceurope.com/

#CyberWeekly · Week 21
4/6

The Microsoft 365 self-service-password-reset campaign — the back door is the front door

Researchers flagged on May 19 an active campaign abusing Microsoft 365 / Entra ID self-service password reset and administrative tooling to take over mailboxes without ever phishing the user. Where the Outlook Web…

Entra ID admin centre → https://entra.microsoft.com/

#CyberWeekly · Week 21
5/6

Belgian patch week: a critical advisory every working day

Between May 18 and May 20 the Centre for Cybersecurity Belgium published seven critical advisories on enterprise software that a lot of Belgian SMBs and their managed service providers sit downstream of. The cluster is…

Centre for Cybersecurity Belgium advisories → https://ccb.belgium.be/advisories

#CyberWeekly · Week 21
6/6

CCB ships a 'First Aid' incident playbook — what every NIS2-scope org needs in place before the call

On Sunday May 18, the Centre for Cybersecurity Belgium published "First Aid in the event of a cyber incident" (EN / NL / FR / DE). It is a concise operational checklist of what an organisation must have ready before an…

CCB First Aid brochure → https://ccb.belgium.be/news/first-aid-event-cyber-incident

Read the full issue
6 stories. Context that matters.
Belgian cybersecurity, weekly.
Scan to read online
https://easycyberprotection.com/cyberweekly/2026/week-21
Follow #CyberWeekly
easycyberprotection.com