Velvet Ant Exploits Cisco Zero-Day to Gain Control and Evade Detection
Cybersecurity researchers have uncovered a threat group, known as Velvet Ant, exploiting a recently disclosed zero-day vulnerability in Cisco switches. The flaw, identified as CVE-2024-20399, allows attackers with valid administrator credentials to escape the command line interface and execute arbitrary commands on the underlying Linux operating system. The vulnerability was weaponized by Velvet Ant to … Read more