Cisco IOS XE Vulnerability Exploited for BADCANDY Web Shell Deployment
First seen 2 Nov 2025, 16:14 UTC
•

•83% similarity
•29
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Hackers are actively exploiting a vulnerability in Cisco IOS XE to deploy the BADCANDY web shell. This exploitation is occurring in the wild, affecting systems running the vulnerable software. The BADCANDY web shell allows attackers to gain unauthorized access and control over compromised devices.
ThreatCluster AI