Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government entities globally, deploying custom malware backdoors named 'Line Runner' and 'Line Da...
The ASUS Live Update vulnerability, identified as CVE-2025-59374, relates to a historic supply-chain attack affecting an End-of-Life software product. Recent media coverage has inaccurately suggested that this vulnerability represents a newly emerging security risk following its addition to CISA's K...
The Global Cybersecurity Vulnerability Enumeration (GCVE) database has been launched in Europe to track IT security vulnerabilities and reduce reliance on U.S. systems. This initiative, accessible at db.gcve.eu, aims to enhance digital sovereignty and was prompted by concerns over the potential disc...
CISA has included a new vulnerability affecting ASUS Live Update in its Known Exploited Vulnerabilities catalog. The flaw, identified as CVE-2025-59374, poses an urgent risk to users of specific ASUS Live Update clients that were distributed with embedded malicious code. Organizations using these af...