China-Linked Hackers Strike Again: Cisco Patches Zero-Day Vulnerability Exploited to Install Root-Level Malware
Cisco patches NX-OS zero-day bug exploited by Chinese hackers to install malware on vulnerable switches.
Hot Take:
Wow, who knew switches could be this vulnerable? It’s like finding out your home security system can be bypassed with a paperclip. Cisco’s devices are clearly having a “bad hair day,” and Velvet Ant is making a beeline for all that juicy data. Time to patch those switches before the ants march one by one, hurrah, hurrah!
Key Points:
- Cisco patched a zero-day vulnerability (CVE-2024-20399) in NX-OS exploited by Velvet Ant.
- Velvet Ant, a Chinese state-sponsored group, used the flaw to install malware as root.
- The vulnerability allows attackers to execute arbitrary commands with root privileges.
- Devices affected include various Nexus and MDS series switches.
- Cisco advises regular monitoring and credential changes for network-admin and vdc-admin users.
Already a member? Log in here