Gladinet — Cyber Attacks, Breaches & Threat Activity

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
November 11, 2025
Last Seen
December 21, 2025

Gladinet, Inc.

Overview

Gladinet, Inc. is the company behind Triofox, a remote-access/file-sharing solution that enables external access to on-premises file shares via cloud-like interfaces. Recent reports describe an unauthenticated remote-access vulnerability in Triofox being exploited by the UNC6485 campaign, underscoring Triofox as an active attack surface in cybersecurity and highlighting the risk of internet-exposed on-premises storage.

Related Threat Clusters

  • New WebKit Zero-Day CVE-2025-14174 Discovered and Exploited

    A new zero-day vulnerability in Apple's WebKit, identified as CVE-2025-14174, has been confirmed and is actively being exploited. This follows the recent disclosure of another critical zero-day vulnerability in…

    1 article · Updated December 16, 2025
  • Exploitation of Triofox Vulnerability CVE-2025-12480 by Hackers

    Cyber threat actors are exploiting a critical unauthenticated access vulnerability in Gladinet’s Triofox file-sharing platform, tracked as CVE-2025-12480. This vulnerability allows unauthorized administrative access and…

    3 articles · Updated November 11, 2025
  • Clop Ransomware Targets Gladinet CentreStack Servers for Data Theft

    The Clop ransomware group is conducting a data extortion campaign against Gladinet CentreStack file servers. This attack exploits multiple security vulnerabilities in CentreStack and its related product, Triofox,…

    6 articles · Updated December 19, 2025
  • Exploitation of Triofox CVE-2025-12480 Vulnerability by Hackers

    Hackers are exploiting a critical unauthenticated access vulnerability (CVE-2025-12480) in Gladinet's Triofox file-sharing platform. This flaw allows attackers to bypass authentication and gain administrative access,…

    4 articles · Updated November 11, 2025
  • CLOP Ransomware Group Targets Gladinet CentreStack Servers

    The CLOP ransomware group is executing a large-scale extortion campaign against Gladinet CentreStack file servers, potentially affecting over 200 IPs. The attack exploits an unknown CVE, which may be either an n-day or…

    2 articles · Updated December 19, 2025
  • CISA Adds Multiple Vulnerabilities to KEV Catalog

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added vulnerabilities from Apple, Gladinet CentreStack, Triofox, and CWP Control Web Panel to its Known Exploited Vulnerabilities (KEV) catalog. These…

    5 articles · Updated December 15, 2025
  • 54 Indicted in Major ATM Jackpotting Ring Bust

    The U.S. Department of Justice has indicted 54 individuals involved in a significant ATM jackpotting operation. This crackdown highlights the ongoing threat posed by organized crime to financial institutions and the…

    3 articles · Updated December 21, 2025
  • Exploitation of Triofox Vulnerability CVE-2025-12480 by UNC6485 Threat Group

    Hackers have exploited a critical unauthenticated access vulnerability (CVE-2025-12480) in Gladinet's Triofox file-sharing platform, allowing them to gain unauthorized administrative access and execute remote code. The…

    5 articles · Updated November 12, 2025

Recent Intelligence Reports

  • security-affairs-newsletter-round-555-by-pierluigi-paganini-international — Securityaffairs · December 21, 2025
  • New Clop ransomware campaign sets sights on Gladinet CentreStack servers — Scworld · December 19, 2025
  • CL0P Ransomware Group Targets Gladinet CentreStack in New Campaign — Thecyberexpress · December 19, 2025
  • CLOP targets Gladinet CentreStack servers in large — Securityaffairs · December 19, 2025
  • Clop Ransomware Group Targets Gladinet CentreStack Servers for Data Theft — Cyberpress · December 19, 2025
  • Clop Ransomware Group Targets Gladinet CentreStack Servers to Exfiltrate Data — Gbhackers · December 19, 2025
  • CVE-2025-14174 Vulnerability: A New Memory Corruption Zero — Socprime · December 16, 2025
  • U.S. CISA adds Apple and Gladinet CentreStack and Triofox flaws to its Known Exploited Vulnerabilities catalog — Securityaffairs.Co · December 15, 2025

CVSS v3.1 Breakdown