logo

CISA warns of ConnectWise ScreenConnect bug exploited in attacks

ID: 1745a153-ed00-56c5-8eb7-131b3282f129

STIX ID: report--1745a153-ed00-56c5-8eb7-131b3282f129

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2025-06-03

Date Updated: 2026-04-20

Author: Ionut Ilascu

...
...

CISA warns that attackers are actively exploiting a recently patched ConnectWise ScreenConnect vulnerability (CVE-2025-3935) and four additional flaws in ASUS routers and Craft CMS — including multiple critical RCE-capable issues — noting real-world exploitation (e.g., a router-targeting botnet named AyySSHush) and urging agencies to apply mitigations or discontinue affected products.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.