Amazon Discovers Custom Malware Exploiting Zero-Day Flaws in Cisco, Citrix Products.
Threat actors are exploiting two zero-day vulnerabilities in Cisco Identity Service Engine (ISE) and Citrix NetScaler ADC products to deliver custom malware. The vulnerabilities, CVE-2025-5777 and CVE-2025-20337, were discovered by Amazon’s threat intelligence team using its MadPot honeypot network. The attacks use the vulnerabilities to bypass authentication and execute arbitrary code on the underlying operating … Read more