Monsta FTP — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
6
occurrences
First Seen
November 7, 2025
Last Seen
November 11, 2025

Monsta FTP is a web-based file transfer and hosting management platform used to facilitate file transfers on web servers.

Overview

Monsta FTP is a web-based file transfer and hosting management platform used to facilitate file transfers on web servers. Security disclosures reveal a critical remote code execution vulnerability (CVE-2025-34299) that allows attackers to execute arbitrary code on affected systems, posing a high risk to exposed deployments. The flaw has been actively exploited in the wild, underscoring the urgency for patching and mitigations.

Related Threat Clusters

  • Monsta FTP Remote Code Execution Vulnerability CVE-2025-34299 Exploited

    A remote code execution vulnerability, CVE-2025-34299, has been identified in Monsta FTP. This zero-day exploit allows attackers to execute arbitrary code remotely, affecting users of the software. The situation has led…

    2 articles · Updated November 10, 2025
  • Monsta FTP Remote Code Execution Vulnerability CVE-2025-34299 Discovered

    A critical remote code execution vulnerability (CVE-2025-34299) has been identified in Monsta FTP, a web-based file transfer client, allowing unauthenticated attackers to execute arbitrary code on affected systems. The…

    1 article · Updated November 11, 2025
  • Critical Remote Code Execution Vulnerability in Monsta FTP Discovered

    A remote code execution vulnerability, CVE-2025-34299, has been identified in Monsta FTP, affecting versions 2.11 and earlier. This flaw allows unauthenticated users to upload arbitrary files, enabling attackers to…

    3 articles · Updated November 11, 2025
  • Monsta FTP Remote Code Execution Vulnerability CVE-2025-34299

    A remote code execution vulnerability, identified as CVE-2025-34299, has been discovered in Monsta FTP. This zero-day exploit affects users of the software, allowing attackers to execute arbitrary code remotely. The…

    2 articles · Updated November 7, 2025
  • Monsta FTP Remote Code Execution Vulnerability CVE-2025-34299

    A remote code execution vulnerability (CVE-2025-34299) has been identified in Monsta FTP. This zero-day exploit affects users of the software, allowing unauthorized access and control. Details about the vulnerability…

    2 articles · Updated November 7, 2025
  • 65% of Leading AI Companies Leak Sensitive Data on GitHub

    A study by Wiz Security revealed that 65% of the Forbes AI 50 companies have leaked sensitive information, including API keys and tokens, on GitHub. The affected companies, valued collectively at over $400 billion, are…

    6 articles · Updated November 11, 2025
  • 2025 Holiday Season Sees Surge in AI-Driven Fraud Activities

    As the 2025 holiday season approaches, fraud activity is accelerating, driven by attackers utilizing artificial intelligence (AI), automation, and stolen data. Industries such as retail, hospitality, and quick-service…

    2 articles · Updated November 12, 2025

Recent Intelligence Reports

  • Holiday Fraud Trends 2025: The Top Cyber Threats to Watch This Season — Esecurityplanet · November 11, 2025
  • 65% of Leading AI Companies Found Leaking Secrets on GitHub — Esecurityplanet · November 11, 2025
  • Monsta FTP: Critical Vulnerability Allows Attackers to Execute Malicious Code — Heise.De · November 10, 2025
  • Monsta FTP Remote Code Execution Flaw Being Exploited in the Wild — Gbhackers · November 10, 2025
  • What’s That Coming Over The Hill? (Monsta FTP Remote Code Execution CVE-2025-34299) — Reddit · November 7, 2025
  • What's That Coming Over The Hill? (Monsta FTP Remote Code Execution CVE-2025-34299) — Labs.Watchtowr · November 7, 2025

CVSS v3.1 Breakdown