Frequency
6
occurrences
First Seen
December 17, 2025
Last Seen
January 16, 2026
Related Threat Clusters
-
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…
11 articles · Updated January 15, 2026 -
Cisco ASA Zero-Day Exploited in State-Espionage Campaign
Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government…
27 articles · Updated December 18, 2025 -
Cisco Confirms Exploitation of AsyncOS Zero-Day by Chinese Hackers
Cisco has reported an unpatched zero-day vulnerability (CVE-2025-20393) in its AsyncOS software, affecting Secure Email Gateway and Secure Email and Web Manager appliances. The vulnerability is being actively exploited…
5 articles · Updated December 17, 2025
Recent Intelligence Reports
- Cisco finally fixes AsyncOS zero — Bleepingcomputer · January 16, 2026
- Cisco says China — Cybersecuritydive · December 18, 2025
- Attacks pummeling Cisco AsyncOS 0-day since late November — Theregister · December 17, 2025
- Attacks pummeling Cisco AsyncOS 0 — Theregister · December 17, 2025
- Cisco warns of unpatched AsyncOS zero — Bleepingcomputer · December 17, 2025
- UAT — Blog.Talosintelligence · December 17, 2025