The eSentire Threat Response Unit reports ongoing exploitation of CVE-2019-18935, a six-year-old IIS vulnerability in Progress Telerik UI, allowing attackers to execute arbitrary code on unpatched servers. Threat actors use a reverse shell via w3wp.exe to gather system information, deploying tools like JuicyPotatoNG. Organizations should enhance patch management and utilize Endpoint Detection and Response solutions to mitigate these risks.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,