More

    Solarwinds WHD flaws exploited in attacks targeting servers and credentials



    • Hackers exploit SolarWinds Web Help Desk flaws CVE-2025-40551 and CVE-2025-26399
    • Attackers deploy Zoho ManageEngine, Cloudflare tunnels, Velociraptor for persistence and control
    • Campaign ongoing since January, disabling security tools before deploying additional malware

    Why deploy malware and risk raising alarms, when you can simply install legitimate tools and abuse it for malicious purposes? This is what hackers recently did to at least three organizations, according to a new report from cybersecurity researchers Huntress.

    As per the investigators, the SolarWinds Web Help Desk (WHD) platform contains two vulnerabilities. First one is an untrusted data deserialization vulnerability that can result in remote code execution (RCE). It is tracked as CVE-2025-40551 and was given a severity score of 9.8/10 (critical).


    https://cdn.mos.cms.futurecdn.net/TWkP7ZurZMY6uepDxsK6Ha-970-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img