More

    Cisco email security products actively targeted in zero-day campaign



    • Cisco confirms zero‑day (CVE‑2025‑20393) in Secure Email appliances exploited by China‑linked actors
    • Attackers deployed Aquashell backdoor, tunneling tools, and log‑clearing utilities for persistence
    • CISA added flaw to KEV; agencies must remediate/stop use by December 24

    A China-affiliated threat actor has been abusing a zero-day vulnerability in multiple Cisco email appliances to gain access to the underlying system and establish persistence.

    Cisco confirmed the news in a blog post and a security advisory, urging users to apply provided recommendations and harden their networks.


    https://cdn.mos.cms.futurecdn.net/HNekN3koBpwwwTby8U44ik-970-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img