Related Threat Clusters
-
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…
11 articles · Updated January 15, 2026 -
LongNosedGoblin and UAT-8302: New China-Aligned APT Threats Targeting Governments
In 2024, ESET identified a new China-aligned APT group named LongNosedGoblin, which targets governmental entities in Southeast Asia and Japan. The group employs a custom toolset, primarily using C#/.NET applications, to…
8 articles · Updated May 5, 2026 -
Cisco ASA Zero-Day Exploited in State-Espionage Campaign
Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government…
27 articles · Updated December 18, 2025 -
Cisco Confirms Exploitation of AsyncOS Zero-Day by Chinese Hackers
Cisco has reported an unpatched zero-day vulnerability (CVE-2025-20393) in its AsyncOS software, affecting Secure Email Gateway and Secure Email and Web Manager appliances. The vulnerability is being actively exploited…
5 articles · Updated December 17, 2025
Recent Intelligence Reports
- UAT — Blog.Talosintelligence · May 5, 2026
- Cisco finally fixes AsyncOS zero — Bleepingcomputer · January 16, 2026
- Cisco Vulnerability Exploit: Chinese Hackers Target Email Gateways — Technadu · December 18, 2025
- Cisco warns of unpatched AsyncOS zero — Bleepingcomputer · December 17, 2025
- UAT — Blog.Talosintelligence · December 17, 2025