logo

Exploits and vulnerabilities in Q3 2025

ID: 2d0a1b2f-8718-590c-b79c-9034b57cd613

STIX ID: report--2d0a1b2f-8718-590c-b79c-9034b57cd613

Feed Name: Securelist by Kaspersky

Threat Score
85/100

Date Published: 2025-12-03

Date Updated: 2026-04-29

Author: Alexander Kolesnikov

...
...

Q3 2025 exploit report: the number of published CVEs rose and attackers actively exploited both legacy Office RCEs (CVE-2018-0802, CVE-2017-11882, CVE-2017-0199) and newly weaponized WinRAR directory traversal flaws (CVE-2025-6218, CVE-2025-8088). Linux kernel issues (Dirty Pipe and others) continue to be exploited for privilege escalation; critical SharePoint "ToolShell" vulnerabilities were disclosed and patched. APT cases leveraged zero-days and common C2 frameworks (Metasploit, Sliver, Mythic) for initial access and lateral movement; the report emphasizes telemetry-backed active exploitation and advises rapid patching and vulnerability management.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.