ThreatCluster

Cisco AsyncOS Zero-Day Exploited by Chinese APT Group

First seen 18 Dec 2025, 10:54 UTC CybersecuritynewsCyberpress 89% similarity 94

Article Content

Browse articles
ThreatCluster

A zero-day vulnerability in Cisco AsyncOS Software has been actively exploited since late November 2025. The attack targets Secure Email Gateway and Secure Email and Web Manager, allowing attackers to execute system-level commands. The campaign is attributed to the UAT-9686 group, assessed to have a Chinese nexus.

ThreatCluster AI

Community

Browse all →