Skip to content

CISA Adds ASUS Embedded Malicious Code Vulnerability to KEV List Following Active Exploitation

Cybersecuritynews Abinaya December 18, 2025

CISA has added a new ASUS vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, signaling urgent risk for affected users and organizations. The flaw, tracked as CVE-2025-59374, affects ASUS Live Update, a utility commonly used to deliver firmware and software updates to ASUS devices. According to the advisory, specific ASUS Live Update clients were distributed with embedded malicious […]

Extracted Entities

Companies (2)

Platforms (1)