CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners

Summary

CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. Attackers are actively exploiting these flaws, deploying reverse shells and cryptocurrency miners.

IFF Assessment

FOE

The inclusion of these vulnerabilities in the KEV catalog indicates active exploitation by malicious actors, posing a direct threat to organizations.

Severity

10.0 Critical

CISA KEV: Listed as actively exploited. Federal patch due: September 05, 2026. Known ransomware use: Unknown.

Defender Context

Defenders should prioritize patching or mitigating vulnerabilities listed in CISA's KEV catalog, as these are known to be actively exploited. The presence of reverse shells and crypto miners suggests attackers are gaining initial access and monetizing their intrusions.

Read Full Story →