Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers
-
Cisco Talos has reported that two recently patched vulnerabilities in Secure Firewall Management Center (FMC) have been exploited in the wild by three distinct threat clusters. These clusters have been linked to both ransomware operations and state-sponsored cyber espionage activity, indicating the flaws are being actively weaponized by a range of adversaries.
The exploitation activity targets Cisco's Secure Firewall Management Center, a centralized management platform for Cisco firewall deployments. Organizations running affected FMC versions should prioritize patching, as the vulnerabilities have moved beyond theoretical risk into active exploitation by multiple groups with different motivations.
Details remain limited in the initial disclosure, but the involvement of three separate clusters suggests broad interest in the flaws across both criminal and nation-state actors. Administrators are advised to review Cisco's security advisories and apply the available fixes without delay.
- Apply the latest patches for Secure Firewall Management Center
- Review Cisco Talos guidance and advisories for affected versions
- Monitor for signs of exploitation in firewall management infrastructure
Source: BleepingComputer
Has your organization already patched its FMC deployments, or are you still assessing exposure?
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Register Login