Frequency
2
occurrences
First Seen
December 4, 2025
Last Seen
December 5, 2025
Related Threat Clusters
-
Exploitation of Array Networks AG Series Command Injection Vulnerability Confirmed
A command injection vulnerability in Array Networks AG Series secure access gateways, tracked as CVE-2025-66644, has been actively exploited since August 2025. The flaw affects the DesktopDirect remote access solution,…
2 articles · Updated December 16, 2025 -
Hackers Exploit ArrayOS AG VPN Vulnerability to Deploy Webshells
Threat actors are exploiting a command injection vulnerability in ArrayOS AG VPN devices to deploy webshells and create unauthorized user accounts. The vulnerability has been actively targeted since at least August…
4 articles · Updated December 5, 2025
Recent Intelligence Reports
- Active Exploitation of Command Injection Flaw Confirmed in Array AG Gateways — Thecyberexpress · December 5, 2025
- Hackers are exploiting ArrayOS AG VPN flaw to plant webshells — Bleepingcomputer · December 4, 2025