Topic: attack campaign
-
Hackers Use SolarWinds Flaws to Deploy DFIR Tool in Attacks
Cybersecurity researchers have identified an active campaign exploiting critical vulnerabilities (CVE-2025-40551 and CVE-2025-26399) in SolarWinds Web Help Desk software to gain unauthorized access and deploy legitimate tools for malicious purposes. Attackers establish persistent control by insta...
Read More » -
Cisco Patches Critical Zero-Day Flaw in AsyncOS (CVE-2025-20393)
Cisco has patched a critical zero-day vulnerability (CVE-2025-20393) in its Email Security and Web Manager appliances, which was actively exploited by suspected state-sponsored actors. The flaw allowed unauthenticated attackers to execute root-level commands via a flaw in the Spam Quarantine feat...
Read More »