Cisco says Chinese hackers are exploiting its customers with new zero-day



  • A zero-day in Cisco AsyncOS allows attackers to gain root access on secure email devices with spam quarantine exposed online
  • All versions of AsyncOS are vulnerable, and without a patch available, Cisco is urging full wipes and rebuilds to eliminate persistence.
  • Investigators suspect a Chinese state-sponsored actor, with many large organizations potentially at risk.

Cisco warns that some of its products have a zero-day vulnerability that is now being actively exploited in attacks. There is currently no patch available and users are advised to take certain steps to strengthen their defenses.

In a security advisory, Cisco said it became aware of a new cyberattack campaign on December 10. This attack targets devices running Cisco AsyncOS software for Cisco Secure Email Gateway and Cisco Secure Email and Web Manager.



Leave a Comment

Your email address will not be published. Required fields are marked *