Kaspersky researchers have discovered new variants of the Eagerbee backdoor targeting ISPs and government entities in the Middle East. New attack components include a service injector for backdoor deployment and plugins for payload delivery, system access, and remote control. The malware gathers system information and supports SSL/TLS protocols. The orchestrator injects itself and sends commands to execute via plugins. It is linked with medium confidence to the CoughingDown threat group.
Active Exploitation of Ivanti VPN 0-Day Vulnerability (CVE-2025-0282)
Ivanti has disclosed two severe vulnerabilities affecting its Connect Secure VPN appliances. The vulnerabilities have raised concerns due to potential network breaches. One of these,