Cisco firewalls are facing another huge surge of attacks – here’s what we know about these latest issues



  • Attackers exploit two zero-days in Cisco ASA firewalls for remote access and persistence
  • Campaign uses stealth tactics like log disabling and firmware tampering to evade detection
  • Cisco urges upgrades to Secure Boot-enabled models and full resets of compromised devices

Cisco is warning customers of an ongoing campaign against companies using some of its services, having become aware of a “new attack variant” recently.

In a new report, the company said it observed an ongoing campaign targeting Cisco ASA 5500-X Series and Secure Firewall devices. The attackers are exploiting two critical zero-day vulnerabilities, tracked as CVE-2025-20333 and CVE-2025-20362, which could allow them to gain remote access, execute arbitrary code, deploy malware, and sometimes even cause Denial of Service (DoS) reboots on unpatched devices.


https://cdn.mos.cms.futurecdn.net/HNekN3koBpwwwTby8U44ik-970-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img