Secure Email And Web Manager — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
11
occurrences
First Seen
December 17, 2025
Last Seen
January 16, 2026

Related Threat Clusters

  • Cisco Fixes Critical AsyncOS Vulnerability Under Attack

    Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…

    11 articles · Updated January 15, 2026
  • Cisco AsyncOS Zero-Day Exploited by Chinese APT Group

    A zero-day vulnerability in Cisco AsyncOS Software has been actively exploited since late November 2025. The attack targets Secure Email Gateway and Secure Email and Web Manager, allowing attackers to execute…

    2 articles · Updated December 18, 2025
  • Cisco Issues Warning for Critical Zero-Day Vulnerability in Unified Communications

    Cisco has disclosed a critical zero-day remote code execution vulnerability, CVE-2026-20045, affecting multiple Unified Communications products. This flaw allows unauthenticated attackers to execute arbitrary commands…

    4 articles · Updated January 22, 2026
  • Chinese Hackers Exploit Cisco's AsyncOS Zero-Day Vulnerability

    Cisco has reported that Chinese hackers are exploiting a zero-day vulnerability in its AsyncOS software, which allows unauthorized root access to Secure Email appliances. The flaw affects Cisco's Secure Email Gateway…

    5 articles · Updated December 18, 2025
  • Cisco ASA Zero-Day Exploited in State-Espionage Campaign

    Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government…

    27 articles · Updated December 18, 2025
  • Cisco Confirms Exploitation of AsyncOS Zero-Day by Chinese Hackers

    Cisco has reported an unpatched zero-day vulnerability (CVE-2025-20393) in its AsyncOS software, affecting Secure Email Gateway and Secure Email and Web Manager appliances. The vulnerability is being actively exploited…

    5 articles · Updated December 17, 2025
  • Automated Credential Campaign Targets VPN Services

    GreyNoise is monitoring a coordinated credential-based attack campaign aimed at enterprise VPN authentication systems, specifically targeting Cisco SSL VPN and Palo Alto Networks GlobalProtect services. The campaign…

    5 articles · Updated December 17, 2025
  • Chinese Hackers Exploit Cisco Email Security Vulnerability

    Chinese hackers have targeted Cisco's Secure Email Gateway and Secure Email and Web Manager appliances by exploiting an unpatched zero-day vulnerability. The threat group UAT-9686 has utilized custom-built hacking tools…

    2 articles · Updated December 18, 2025

Recent Intelligence Reports

  • Cisco 0 — Cybersecuritynews · January 16, 2026
  • Cisco's Zero-Day Nightmare: China-Linked Hackers Breach Email Defenses — Webpronews · January 16, 2026
  • Patch now! Critical Cisco vulnerability exploited since December 2025 — Heise.De · January 16, 2026
  • Cisco finally fixes max-severity bug under attack for weeks — Theregister · January 15, 2026
  • Cisco finally fixes max — Theregister · January 15, 2026
  • New password spraying attacks target Cisco, PAN VPN gateways — Bleepingcomputer · December 18, 2025
  • Cisco says Chinese hackers are exploiting an unpatched AsyncOS zero-day flaw – here's what we know so far — Itpro · December 18, 2025
  • Chinese hackers exploit Cisco email gateway zero — Cyberinsider · December 18, 2025

CVSS v3.1 Breakdown