Itnews.Au
Ongoing Exploitation of Cisco IOS XE Vulnerability with BADCANDY Webshell
First seen 23 Nov 2025, 03:35 UTC
•



•100% similarity
•21.5
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Cyberattacks exploiting the critical Cisco IOS XE vulnerability (CVE-2023-20198) continue to affect Australian devices, with over 150 routers and switches still infected with the BADCANDY webshell as of late October 2025. Despite patches being available for over two years, threat actors are actively targeting unpatched devices, demonstrating the persistent risk posed by known vulnerabilities.
ThreatCluster AI