Tag

#Active Exploitation

blogCRITICAL 9.0

Understanding the Actively Exploited Zero-Day in Cisco Secure Email Gateways

Cisco has warned customers of an actively exploited zero-day vulnerability in its Secure Email Gateways. The company confirmed that the defect was exploited before it was disclosed and patched. This vulnerability poses a significant risk to organizations using these gateways, as it could allow attackers to compromise email security.

1 source
newsCRITICAL 9.8

Critical Check Point VPN Flaws Enable Remote Code Execution

The Dutch NCSC warns of two critical vulnerabilities in Check Point VPN products, both with a CVSS score of 9.8, which could enable remote code execution. These flaws are actively exploited, posing a significant risk to networks. Immediate patching and restricted VPN access are recommended.

1 source
newsCRITICAL 9.0

CrowdStrike Privilege Escalation Zero-Day Exploit Published

A security researcher has published a zero-day exploit for CrowdStrike, potentially allowing hackers to escalate privileges. This vulnerability is actively exploited, posing a significant risk to affected systems. Immediate action is required to mitigate this threat.

1 source
blogCRITICAL 9.0

Chaining SonicWall SMA1000 Vulnerabilities for Unauthenticated Remote Code Execution

This educational analysis delves into the active exploitation of two zero-day vulnerabilities in SonicWall SMA1000 devices, which can be chained to achieve unauthenticated remote code execution. We will explore the root cause, attack surface, exploitation mechanics, and real-world impact of these vulnerabilities, providing defenders with critical insights to protect their networks.

1 source
newsCRITICAL 9.0

Actively Exploited Zero-Days in SonicWall SMA 1000 Appliances

Attackers are actively exploiting zero-day vulnerabilities in SonicWall SMA 1000 appliances, which have been under consistent attack for years. This recent exploitation adds to the five actively exploited vulnerabilities in the same product since late 2025. Security professionals should immediately review and update their SonicWall configurations.

1 source