logo

Hundreds of Cisco customers are vulnerable to new Chinese hacking campaign, researchers say

ID: ed2f8380-c4ad-5012-b802-3c62abb60810

STIX ID: report--ed2f8380-c4ad-5012-b802-3c62abb60810

Feed Name: TechCrunch Security News

Threat Score
90/100

Date Published: 2025-12-19

Date Updated: 2026-04-23

Author: Lorenzo Franceschi-Bicchierai

...
...

Cisco disclosed a zero-day (CVE-2025-20393) being actively exploited by a Chinese government-backed hacking group against enterprise customers using Cisco Secure Email Gateway and Secure Email and Web Manager; security researchers (Shadowserver, Censys) estimate hundreds of exposed systems, there are no patches available, and Cisco recommends rebuilding affected appliances to remove attacker persistence, with Talos noting activity since at least late November 2025.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.