Related Threat Clusters
-
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Critical IKEv2 RCE Vulnerability in WatchGuard Firebox Devices Exploited
WatchGuard Technologies released patches on July 2, 2026, for a critical remote code execution vulnerability (CVE-2026-13368) affecting all supported Firebox firewall models. This flaw, linked to a race condition in the…
3 articles · Updated July 4, 2026 -
Critical RCE Vulnerability in WatchGuard Firebox Firewalls Actively Exploited
WatchGuard has issued a warning about a critical remote code execution vulnerability, tracked as CVE-2025-14733, affecting its Firebox firewalls running Fireware OS 11.x and later. The flaw allows unauthenticated…
20 articles · Updated December 19, 2025 -
Critical Vulnerability in WatchGuard Firebox OS Actively Exploited
A critical vulnerability (CVE-2025-9242) in WatchGuard Firebox OS allows remote unauthenticated attackers to execute arbitrary code. Affected versions include Fireware OS 11.x, 12.x, and 2025.1. The U.S. Cybersecurity &…
3 articles · Updated November 13, 2025 -
Critical Vulnerability in WatchGuard Fireware OS Exposed to Remote Attacks
A critical vulnerability (CVE-2025-9242) in WatchGuard's Fireware OS has been identified, allowing remote unauthenticated attackers to execute arbitrary code on over 54,000 Firebox devices globally. The U.S.…
4 articles · Updated November 14, 2025 -
Cisco Faces Multiple Critical Vulnerabilities in Unified CCX and Firewalls
Cisco has disclosed critical vulnerabilities in its Unified Contact Center Express (CCX) platform and Adaptive Security Appliances (ASA) that allow unauthenticated remote attackers to execute arbitrary code and…
10 articles · Updated November 10, 2025 -
Critical Vulnerabilities in Fortinet FortiWeb Actively Exploited
Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…
74 articles · Updated November 28, 2025 -
Cisco Firewalls Targeted by New Attack Variant Exploiting Critical Vulnerabilities
Cisco has reported ongoing attacks against its firewalls, specifically targeting vulnerabilities CVE-2025-20333 and CVE-2025-20362. These flaws allow remote code execution and unauthorized access, leading to potential…
20 articles · Updated November 14, 2025
Recent Intelligence Reports
- CVE-2025-9242 — www.watchguard.com · July 6, 2026
- WatchGuard Firebox Patches Third Critical IKEv2 RCE in 10 Months, T15/T35 Still Exposed — Techtimes · July 4, 2026
- Critical-rated WatchGuard Firebox flaw under active attack — Theregister · December 19, 2025
- WatchGuard sounds alarm as critical Firebox flaw comes under active attack — Theregister · December 19, 2025
- WatchGuard fixes ‘critical’ zero — Csoonline · December 19, 2025
- New critical WatchGuard Firebox firewall flaw exploited in attacks — Bleepingcomputer · December 19, 2025
- Fortinet's FortiWeb Fiasco: Zero — Webpronews · November 17, 2025
- Cisco ASA firewalls still under attack; CISA issues guidance for patch — Scmagazine · November 14, 2025