CISA warns of ConnectWise ScreenConnect bug exploited in attacks
ID: 1745a153-ed00-56c5-8eb7-131b3282f129
STIX ID: report--1745a153-ed00-56c5-8eb7-131b3282f129
Feed Name: Bleeping Computer
Threat Score
CISA warns that attackers are actively exploiting a recently patched ConnectWise ScreenConnect vulnerability (CVE-2025-3935) and four additional flaws in ASUS routers and Craft CMS — including multiple critical RCE-capable issues — noting real-world exploitation (e.g., a router-targeting botnet named AyySSHush) and urging agencies to apply mitigations or discontinue affected products.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
