X

Vous n'êtes pas connecté

  - BLEEPINGCOMPUTER.COM - A La Une - 18/Jul 22:24

New CrushFTP zero-day exploited in attacks to hijack servers

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain administrative access via the web interface on vulnerable servers. [...]

Articles similaires

Sorry! Image not available at this time

New CrushFTP zero-day exploited in attacks to hijack servers

bleepingcomputer.com - 18/Jul 22:24

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain...

Sorry! Image not available at this time

CrushFTP zero-day actively exploited at least since July 18

securityaffairs.co - 10:31

Hackers exploit CrushFTP zero-day, tracked as CVE-2025-54309, to gain admin access via HTTPS when DMZ proxy is off. Threat actors are exploiting a...

Sorry! Image not available at this time

CVE-2025-54309 – Critical Authentication Bypass in CrushFTP

thecyberthrone.in - 02:31

Overview CVE-2025-54309 is a critical security vulnerability in the CrushFTP Managed File Transfer Server, allowing unauthenticated remote attackers...

Sorry! Image not available at this time

CVE-2025-54309 – Critical Authentication Bypass in CrushFTP

thecyberthrone.in - 02:31

Overview CVE-2025-54309 is a critical security vulnerability in the CrushFTP Managed File Transfer Server, allowing unauthenticated remote attackers...

Sorry! Image not available at this time

Over 1,000 CrushFTP servers exposed to ongoing hijack attacks

bleepingcomputer.com - 21/Jul 11:34

Over 1,000 CrushFTP instances currently exposed online are vulnerable to hijack attacks that exploit a critical security bug, providing admin...

Sorry! Image not available at this time

Over 1,000 CrushFTP servers exposed to ongoing hijack attacks

bleepingcomputer.com - 21/Jul 11:34

Over 1,000 CrushFTP instances currently exposed online are vulnerable to hijack attacks that exploit a critical security bug, providing admin...

Sorry! Image not available at this time

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks

securityaffairs.co - 21/Jul 11:14

Microsoft patched an exploited SharePoint flaw (CVE-2025-53770) and disclosed a new one, warning of ongoing attacks on on-prem servers. Microsoft...

Sorry! Image not available at this time

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks

securityaffairs.co - 21/Jul 11:14

Microsoft patched an exploited SharePoint flaw (CVE-2025-53770) and disclosed a new one, warning of ongoing attacks on on-prem servers. Microsoft...

Sorry! Image not available at this time

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

bleepingcomputer.com - 20/Jul 15:40

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no...

Sorry! Image not available at this time

Microsoft SharePoint zero-day exploited in RCE attacks, no patch available

bleepingcomputer.com - 20/Jul 15:40

A critical zero-day vulnerability in Microsoft SharePoint, tracked as CVE-2025-53770, has been actively exploited since at least July 18th, with no...