Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Resolve AI, a startup led by former Splunk executives, reaches $1 billion Series A valuation

Establish a venture-backable company in a highly regulated field

Cursor continues acquisition spree with deal with Graphite

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Cisco announces Chinese hackers are exploiting customers with new zero-day attack
Startups

Cisco announces Chinese hackers are exploiting customers with new zero-day attack

userBy userDecember 17, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Cisco announced Wednesday that hackers have exploited critical vulnerabilities in some of its most popular products, allowing them to take complete control of affected devices. What’s worse, there are no patches available at this time.

Cisco said in a security advisory that it discovered a hacking campaign on December 10 that targeted Cisco AsyncOS software, specifically the physical and virtual appliances Cisco Secure Email Gateway, Cisco Secure Email, and Web Manager. The advisory says affected devices have a feature called “Spam Quarantine” enabled and can be accessed from the internet.

Cisco pointed out that this feature is not enabled by default and does not need to be exposed to the internet, which may be good news. Michael Taggart, a senior cybersecurity researcher at UCLA Health Sciences, told TechCrunch, “The attack surface of this vulnerability will be limited because it requires an internet-facing administrative interface and certain functionality to be enabled.”

But Kevin Beaumont, a security researcher who tracks hacking activity, told TechCrunch that this appears to be a particularly problematic hacking operation because many large companies use affected products, there are no patches available, and it’s unclear how long hackers had backdoors in affected systems.

At this time, Cisco has not disclosed the number of customers affected.

In an interview with TechCrunch, Cisco spokesperson Meredith Corey declined to answer a series of questions, saying the company is “actively investigating this issue and developing a permanent remediation.”

inquiry

Do you have more information about this hacking campaign, including what companies were targeted? You can contact Lorenzo Franceschi-Bicchierai securely from your non-work device on Signal (+1 917 257 1382), on Telegram and Keybase @lorenzofb, or by email.

The solution Cisco is currently offering customers is to basically erase and rebuild the software on the affected products, since no patch exists.

“If a breach is confirmed, rebuilding the appliance is currently the only viable option to eradicate the threat actor’s persistence mechanism from the appliance,” the company wrote.

According to Cisco Talos, the company’s threat intelligence research team, which published a blog post about the hacking campaign, the hackers behind the campaign have ties to China and other known Chinese government hacking groups.

The researchers wrote that hackers have been using the vulnerability (currently a zero-day) to install a persistent backdoor, and that the campaign has been ongoing “since at least late November 2025.”


Source link

#Aceleradoras #CapitalRiesgo #EcosistemaStartup #Emprendimiento #InnovaciónEmpresarial #Startups
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleSonicWall fixes actively exploited CVE-2025-40602 on SMA 100 appliances
Next Article YouTube will exclusively stream the Oscars starting in 2029
user
  • Website

Related Posts

Resolve AI, a startup led by former Splunk executives, reaches $1 billion Series A valuation

December 20, 2025

Establish a venture-backable company in a highly regulated field

December 19, 2025

Cursor continues acquisition spree with deal with Graphite

December 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Resolve AI, a startup led by former Splunk executives, reaches $1 billion Series A valuation

Establish a venture-backable company in a highly regulated field

Cursor continues acquisition spree with deal with Graphite

Elon Musk’s $56 billion Tesla pay package reinstated by Delaware Supreme Court

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.