Cisco fixes actively exploited Catalyst SD-WAN zero-day
Separately, Microsoft has warned that threat actors are exploiting a Zimbra vulnerability to remotely execute commands, deploy web shells, and access email and authentication data.
In brief: Cisco, Citrix, Apple patch zero-days in their software; DIVD, Belnet, Bitget breached via zero-day flaws; and more.
Separately, Microsoft has warned that threat actors are exploiting a Zimbra vulnerability to remotely execute commands, deploy web shells, and access email and authentication data.
The attackers compromised two security appliances and installed a web shell on one device and deployed malware and a custom withdrawal tool on a production wallet server.
Researchers say the attacks can exploit the NetScaler Packet Processing Engine and result in root-level access on the underlying FreeBSD system.
Microsoft has observed Star Blizzard targeting Ukrainian individuals and institutions, as well as international NGOs, think tanks, governments and financial organizations involved in supporting Ukraine.
Authorities have not released the man's name or other details about the case.
The flaw was exploited in an u201cextremely sophisticatedu201d attack against specific individuals using versions of iOS before iOS 27.