Critical N-able N-central Vulnerability and Active Exploitation
ID: da93b301-49b5-5189-b113-8d0ddcd1bf39
STIX ID: report--da93b301-49b5-5189-b113-8d0ddcd1bf39
Feed Name: Huntress Blog
Huntress details active exploitation of a critical authentication-bypass vulnerability in N-able N-central permitting attackers administrative console access, abuse of the Take Control feature to pivot into managed endpoints (including Domain Controllers), and deployment of persistent Cloudflare tunnels; the report lists malicious IPs/domains, urges immediate application of N-able hotfixes (2026.3.1.7 and later 2026.3.1.10), and provides detection and mitigation guidance for MSPs and customers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
