Tekmono
  • News
  • Guides
  • Lists
  • Reviews
  • Deals
No Result
View All Result
Tekmono
No Result
View All Result
Home News
Cisco Warns of Critical Zero-Day Vulnerability Exploitation

Cisco Warns of Critical Zero-Day Vulnerability Exploitation

by Tekmono Editorial Team
19/12/2025
in News
Share on FacebookShare on Twitter

Cisco has disclosed a critical zero-day vulnerability in several of its products is being exploited by hackers, allowing for full takeover of affected devices, with no patches currently available to mitigate the threat.

The company discovered the hacking campaign on December 10 and issued a security advisory warning of the attacks, which target Cisco AsyncOS software used in various appliances, including Cisco Secure Email Gateway, Cisco Secure Email, and Web Manager. The vulnerability is exploitable in devices with the “Spam Quarantine” feature enabled and accessible from the internet, although Cisco notes that this feature is not enabled by default and does not require internet exposure.

According to Michael Taggart, a senior cybersecurity researcher at UCLA Health Sciences, “the requirement of an internet-facing management interface and certain features being enabled will limit the attack surface for this vulnerability.” However, Kevin Beaumont, a security researcher, described the situation as particularly problematic due to the widespread use of the affected products among large organizations, the lack of available patches, and the uncertainty surrounding the duration of the hackers’ backdoors in compromised systems. Notably, Cisco has not disclosed the number of affected customers.

Related Reads

OpenAI Launches Customizable Skills for Codex Coding Agent

Amazon’s Alexa+ to Integrate with Four New Services

EA Investigated for AI-Generated Content in Battlefield 6

Apple to Start iPhone 18 Production in January

Cisco spokesperson Meredith Corley stated that the company “is actively investigating the issue and developing a permanent remediation.” In the meantime, the company’s advisory recommends wiping and rebuilding affected appliances as the only current option to remove the threat actors’ persistence mechanisms. The advisory explicitly states: “In case of confirmed compromise, rebuilding the appliances is, currently, the only viable option to eradicate the threat actors persistence mechanism from the appliance.”

Cisco Talos, the company’s threat intelligence team, has linked the hackers to China and known Chinese government hacking groups. According to a blog post by Talos, the actors are using the zero-day vulnerability to install persistent backdoors, with the campaign having been active since at least late November 2025.

ShareTweet

You Might Be Interested

OpenAI Launches Customizable Skills for Codex Coding Agent
News

OpenAI Launches Customizable Skills for Codex Coding Agent

24/12/2025
Amazon’s Alexa+ to Integrate with Four New Services
News

Amazon’s Alexa+ to Integrate with Four New Services

24/12/2025
EA Investigated for AI-Generated Content in Battlefield 6
News

EA Investigated for AI-Generated Content in Battlefield 6

24/12/2025
Apple to Start iPhone 18 Production in January
News

Apple to Start iPhone 18 Production in January

24/12/2025
Please login to join discussion

Recent Posts

  • OpenAI Launches Customizable Skills for Codex Coding Agent
  • Amazon’s Alexa+ to Integrate with Four New Services
  • EA Investigated for AI-Generated Content in Battlefield 6
  • Apple to Start iPhone 18 Production in January
  • Connect Your Phone to Wi-Fi Easily

Recent Comments

No comments to show.
  • News
  • Guides
  • Lists
  • Reviews
  • Deals
Tekmono is a Linkmedya brand. © 2015.

No Result
View All Result
  • News
  • Guides
  • Lists
  • Reviews
  • Deals