logo

Questions Swirl Around ConnectWise Flaw Used in Attacks

ID: 275ad785-cf8c-5da0-b381-177a7abf430d

STIX ID: report--275ad785-cf8c-5da0-b381-177a7abf430d

Feed Name: Dark Reading

Threat Score
78/100

Date Published: 2025-06-05

Date Updated: 2026-04-21

Author: Rob Wright

...
...

ConnectWise disclosed that a suspected nation-state actor breached its ScreenConnect environment; the company patched CVE-2025-3935 (an improper authentication/ViewState injection issue) on April 24 and reported limited customer impact. CISA later added the CVE to its Known Exploited Vulnerabilities catalog, Mandiant is assisting the investigation, and public advisories and timelines contain discrepancies about when exploitation was detected.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.