The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added three vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, citing active exploitation.…
active exploitationAI-powered hackingApache Software FoundationApache Tomcat
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity vulnerability affecting N-able N-central to its Known Exploited Vulnerabilities (KEV)…
CVE-2025-8875 is one of two N-able N-central vulnerabilities weaponized in limited attacks targeting on-premises environments approximately one year before CVE-2026-18577.
CVE-2025-8876 is the second N-able N-central vulnerability exploited in limited attacks on on-premises environments, highlighting recurring security issues in the RMM platform.
Huntress reported observing threat actors exploiting CVE-2026-18577 across multiple organizations, with patterns including reconnaissance and lateral movement.