Questions Swirl Around ConnectWise Flaw Used in Attacks
ID: 275ad785-cf8c-5da0-b381-177a7abf430d
STIX ID: report--275ad785-cf8c-5da0-b381-177a7abf430d
Feed Name: Dark Reading
Threat Score
ConnectWise disclosed that a suspected nation-state actor breached its ScreenConnect environment; the company patched CVE-2025-3935 (an improper authentication/ViewState injection issue) on April 24 and reported limited customer impact. CISA later added the CVE to its Known Exploited Vulnerabilities catalog, Mandiant is assisting the investigation, and public advisories and timelines contain discrepancies about when exploitation was detected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
