logo

Critical N-able N-central Vulnerability and Active Exploitation

ID: da93b301-49b5-5189-b113-8d0ddcd1bf39

STIX ID: report--da93b301-49b5-5189-b113-8d0ddcd1bf39

Feed Name: Huntress Blog

Threat Score
90/100

Date Published: 2026-08-03

Date Updated: 2026-08-19

...
...

Huntress details active exploitation of a critical authentication-bypass vulnerability in N-able N-central permitting attackers administrative console access, abuse of the Take Control feature to pivot into managed endpoints (including Domain Controllers), and deployment of persistent Cloudflare tunnels; the report lists malicious IPs/domains, urges immediate application of N-able hotfixes (2026.3.1.7 and later 2026.3.1.10), and provides detection and mitigation guidance for MSPs and customers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.