CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
Summary
CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. Attackers are actively exploiting these flaws, deploying reverse shells and cryptocurrency miners.
IFF Assessment
The inclusion of these vulnerabilities in the KEV catalog indicates active exploitation by malicious actors, posing a direct threat to organizations.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: September 05, 2026. Known ransomware use: Unknown.
Defender Context
Defenders should prioritize patching or mitigating vulnerabilities listed in CISA's KEV catalog, as these are known to be actively exploited. The presence of reverse shells and crypto miners suggests attackers are gaining initial access and monetizing their intrusions.