CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

Exploitation of Network Security Flaws by APT Actors

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

Multiple network security products, including those from Fortinet, SonicWall, Cisco, and WatchGuard, have been targeted by threat actors exploiting critical vulnerabilities. Cisco's AsyncOS flaw (CVE-2025-20393) is being exploited by a China-nexus APT group, UAT-9686, to deliver malware such as ReverseSSH and AquaPurge. SonicWall's SMA 100 series appliances are also being targeted through a combination of vulnerabilities to achieve unauthenticated remote code execution. These attacks highlight the increasing focus on network security products as entry points for deeper network infiltration.

Timeline

  1. 22.12.2025 14:00 1 articles · 23h ago

    Exploitation of Cisco and SonicWall Vulnerabilities by APT Groups

    Over the past week, threat actors have been exploiting critical vulnerabilities in Cisco's AsyncOS (CVE-2025-20393) and SonicWall's SMA 100 series appliances (CVE-2025-40602 and CVE-2025-23006) to achieve unauthenticated remote code execution. These exploits are being used to deliver malware and gain deeper access to targeted networks. The attacks highlight the increasing focus on network security products as entry points for broader network infiltration.

    Show sources

Information Snippets