XE Hacker Group Exploits VeraCore Zero-Day to Deploy Persistent Web Shells
by Hell_Let_Loose - Monday February 10, 2025 at 04:30 PM
#1
XE Group, a hacker crew active since 2010, is now exploiting critical flaws like CVE-2024-57968 and CVE-2025-25181 to deploy web shells and maintain long-term access to systems. They’ve shifted focus from credit card skimming to attacking supply chains, particularly in manufacturing and distribution. These guys are getting smarter, using zero-day vulnerabilities for persistent control.
Meanwhile, CISA has flagged several active vulnerabilities, like those in 7-Zip and Sophos XG Firewalls, which are being exploited by Russian and Chinese hacker groups. These flaws could lead to malware infections, espionage, and even sabotage. If systems aren’t patched, they’re sitting ducks for these targeted attacks.


https://thehackernews.com/2025/02/xe-hac...-zero.html
Reply
#2
damn this is crazy cve
Reply
#3
pretty old in the game, it seems
https://www.bleepingcomputer.com/news/se...ard-theft/
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Corruptiion of PLN [Indonesia] - 2025 Investigation Viral LordZeroDay 26 2,336 10 hours ago
Last Post: sang_seniman
  gaming omgijkl 0 75 Yesterday, 03:09 PM
Last Post: omgijkl
  Technical Analysis: CVE-2026-41940 – cPanel/WHM Authentication Bypass Tr28 0 279 May 11, 2026, 10:52 PM
Last Post: Tr28
  Zara data breach exposed personal information of 197,000 people namenonamen 2 232 May 11, 2026, 07:49 PM
Last Post: skipqer
  CYBERSECURITY GUIDE: UNDERSTANDING THE PAN-OS VULNERABILITY (CVE-2026-0300) Tr28 0 193 May 11, 2026, 11:54 AM
Last Post: Tr28

Forum Jump:


 Users browsing this forum: 1 Guest(s)