home > posts > social @ 2023-10-16
2023-10-16

social @ 2023-10-16

An actively exploited zero-day in Cisco IOS-XE's web interface is leading to mass compromise and implant (backdoor) installation: https://arstechnica.com/security/2023/10/actively-exploited-cisco-0-day-with-maximum-10-severity-gives-full-network-control/

CVSS 10.0 and bad enough that Cisco is providing methods to check for the specific implant being installed.

via @dangoodin


<< social @ 2023-10-16 social @ 2023-10-11 >>

Copyright 1998-2026 HD Moore