XE Hacker Group Exploits VeraCore Zero-Day to Deploy Persistent Web Shells
by Hell_Let_Loose - Monday February 10, 2025 at 04:30 PM
#1
XE Group, a hacker crew active since 2010, is now exploiting critical flaws like CVE-2024-57968 and CVE-2025-25181 to deploy web shells and maintain long-term access to systems. They’ve shifted focus from credit card skimming to attacking supply chains, particularly in manufacturing and distribution. These guys are getting smarter, using zero-day vulnerabilities for persistent control.
Meanwhile, CISA has flagged several active vulnerabilities, like those in 7-Zip and Sophos XG Firewalls, which are being exploited by Russian and Chinese hacker groups. These flaws could lead to malware infections, espionage, and even sabotage. If systems aren’t patched, they’re sitting ducks for these targeted attacks.


https://thehackernews.com/2025/02/xe-hac...-zero.html
Reply
#2
damn this is crazy cve
Reply
#3
pretty old in the game, it seems
https://www.bleepingcomputer.com/news/se...ard-theft/
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [OpSec 101] How PomPomPurin got raided azwug 0 20 10 minutes ago
Last Post: azwug
  [HOT] CVE-2026-41940: cPanel/WHM Auth Bypass to ROOT - 0-Day Chain Breakdown & PoC Zfruussia 5 387 1 hour ago
Last Post: lightningspeed
  BreachForums Leak Free Data KingJulien 181 13,897 Today, 01:55 AM
Last Post: nouseridontthink
  New Security Breach Allegations for Samsung TVs (Europe/UK Region) Tr28 1 274 Yesterday, 06:27 AM
Last Post: leojson
  Brent crude oil. dai5 1 181 Yesterday, 06:20 AM
Last Post: leojson

Forum Jump:


 Users browsing this forum: 1 Guest(s)