Topic: cisa directive

  • CISA Urges Immediate Patch for Exploited Citrix Bleed 2 Vulnerability

    CISA Urges Immediate Patch for Exploited Citrix Bleed 2 Vulnerability

    Federal agencies and businesses using Citrix NetScaler systems must urgently patch **CVE-2025-5777** after CISA confirmed active attacks, issuing a strict 24-hour deadline for remediation. The vulnerability affects **NetScaler ADC and Gateway devices** running outdated versions, allowing unauthor...

    Read More »
  • Urgent: 50,000 Cisco Firewalls at Risk From Active Attacks

    Urgent: 50,000 Cisco Firewalls at Risk From Active Attacks

    Attackers are actively exploiting critical vulnerabilities CVE-2025-20333 and CVE-2025-20362 in around 50,000 Cisco ASA and FTD devices, enabling unauthorized remote code execution and access without authentication. Over 48,800 internet-facing devices remain unpatched, primarily in the U.S., with...

    Read More »
  • Urgent: NetScaler Zero-Day Exploit Actively Attacked (CVE-2025-7775)

    Urgent: NetScaler Zero-Day Exploit Actively Attacked (CVE-2025-7775)

    Three critical vulnerabilities have been discovered in Citrix NetScaler ADC and Gateway devices, with CVE-2025-7775 already being actively exploited for remote code execution and denial of service. Citrix has released security updates for affected versions and strongly advises immediate patching,...

    Read More »
  • ArcaneDoor Hackers Renew Cisco Attacks with Stealthy Campaign

    ArcaneDoor Hackers Renew Cisco Attacks with Stealthy Campaign

    A sophisticated cyber-espionage campaign by the ArcaneDoor threat actor has compromised older Cisco ASA firewalls using zero-day vulnerabilities to implant malware and steal data. The attackers used advanced evasion techniques and modified the ROM Monitor to ensure persistence, but only older mod...

    Read More »
  • WatchGuard Issues Critical Firewall Vulnerability Alert

    WatchGuard Issues Critical Firewall Vulnerability Alert

    WatchGuard has disclosed a critical remote code execution vulnerability (CVE-2025-9242) in its Firebox firewalls, allowing unauthenticated attackers to run arbitrary code on affected devices. The flaw impacts Fireware OS versions 11.x, 12.x, and 2025.1, specifically when IKEv2 VPN is configured, ...

    Read More »