WatchGuard sounds alarm as critical Firebox flaw comes under active attack
ID: d295527c-6e11-570e-886c-753d58615de1
STIX ID: report--d295527c-6e11-570e-886c-753d58615de1
Feed Name: The Register (Security)
Threat Score
WatchGuard has confirmed active exploitation of a critical unauthenticated RCE (CVE-2025-32978, 9.3) in Firebox firewalls' IKE service; the vendor has published advisories, IOCs, and firmware updates with a temporary workaround for unpatched systems. Successful exploitation grants remote code execution and full control of internet-reachable firewalls, posing high risk to network traffic, credentials, VPNs, and downstream systems.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
