Cisco’s ArcaneDoor Vulnerabilities: Patch Now or Hackers Will Party!
Cisco released security updates to tackle ArcaneDoor exploitation in Cisco ASA devices and Firepower Threat Defense software. Active exploits of CVE-2024-20353 and CVE-2024-20359 have been reported.

Hot Take:
If you’re still running your Cisco ASA and FTD software without the latest updates, you might as well put out a welcome mat for hackers. “Come in, we’re open!” isn’t a sign you want to hang on your firewall.
Key Points:
- Three vulnerabilities (CVE-2024-20353, CVE-2024-20359, CVE-2024-20358) in Cisco ASA and FTD software.
- Active exploitation of CVE-2024-20353 and CVE-2024-20359 reported.
- Updates released to address these vulnerabilities.
- CISA urges immediate action to apply updates and check for malicious activity.
- Findings should be reported to CISA.
Already a member? Log in here