Cisco

  • Blog

    Critical Cisco Smart Licensing Utility flaws now exploited in attacks

    Attackers have started targeting Cisco Smart Licensing Utility (CSLU) instances unpatched against a vulnerability exposing a built-in backdoor admin account. The CSLU Windows application allows admins to manage licenses and linked products on-premises without connecting them to Cisco’s cloud-based Smart Software Manager solution. Cisco patched this security flaw (tracked as CVE-2024-20439) in September, describing it as “an undocumented static user…

    Read More »
  • Blog

    Cisco unveils new agentic AI tools to improve customer and employee experience

    Cisco wants its new agentic AI tools to anticipate the needs of staff and customers alike as the firm unveils a new suite of agentic offerings. The tech giant has announced the general availability of the Webex AI Agent, a tool targeted at customer service, as well as other solutions for collaboration devices and employee experiences. “Cisco is driving toward…

    Read More »
  • Blog

    Cisco IOS XR vulnerability lets attackers crash BGP on routers

    Cisco has patched a denial of service (DoS) vulnerability that lets attackers crash the Border Gateway Protocol (BGP) process on IOS XR routers with a single BGP update message. IOS XR runs on the company’s carrier-grade, Network Convergence System (NCS), and Carrier Routing System (CRS) series of routers, such as the ASR 9000, NCS 5500, and 8000 series. This high-severity flaw (tracked as CVE-2025-20115) was found…

    Read More »
  • Blog

    Cisco warns of Webex for BroadWorks flaw exposing credentials

    Cisco warned customers today of a vulnerability in Webex for BroadWorks that could let unauthenticated attackers access credentials remotely. Webex for BroadWorks integrates Cisco Webex’s video conferencing and collaboration features with the BroadWorks unified communications platform. While the company has yet to assign a CVE ID to track this security issue, Cisco says in a Tuesday security advisory that it already pushed…

    Read More »
  • Blog

    CISA tags Windows, Cisco vulnerabilities as actively exploited

    CISA has warned US federal agencies to secure their systems against attacks exploiting vulnerabilities in Cisco and Windows systems. While the cybersecurity agency has tagged these flaws as actively exploited in the wild, it has yet to provide specific details regarding this malicious activity and who is behind it. The first flaw (tracked as CVE-2023-20118) enables attackers to execute arbitrary…

    Read More »
  • Blog

    Chinese hackers breach more US telecoms via unpatched Cisco routers

    China’s Salt Typhoon hackers are still actively targeting telecoms worldwide and have breached more U.S. telecommunications providers via unpatched Cisco IOS XE network devices. Recorded Future’s Insikt Group threat research division states that the Chinese hacking group (tracked Salt Typhoon and RedMike) has exploited the CVE-2023-20198 privilege escalation and CVE-2023-20273 Web UI command injection vulnerabilities. These ongoing attacks have already…

    Read More »
  • Blog

    ‘Divorced from reality’: HPE slams DOJ over bid to block Juniper deal, claims move will benefit Cisco

    HPE has hit out at the US Department of Justice (DOJ) over its attempt to block the acquisition of Juniper Networks, suggesting the move is “divorced from reality” and will benefit competitors in the space. HPE bid $14 billion for Juniper Networks in January 2024, with the deal seen as a play by the networking giant to take advantage of…

    Read More »
  • Blog

    Cisco polishes its platform but the network is still king

    Last year, Cisco Live 2024 was my first proper introduction to the company in all its glory and if I’m honest I was somewhat overwhelmed by its scale and breadth. Fortunately for me, the overriding theme in Amsterdam that year was tightly focused on unifying Cisco’s byzantine product ecosystem under one integrated platform. In 2024, the firm’s foremost storyteller Jeetu…

    Read More »
  • Blog

    Cisco claims new smart switches provide next-level perimeter defense

    Cisco’s ‘security everywhere’ mantra has just taken on new meaning with the launch of a series of smart network switches it says will redefine the way firewalls, the old stalwart of cybersecurity, work entirely. Unveiled at Cisco Live in Amsterdam, Cisco said its N9300 Smart Switches will introduce new capabilities to help businesses defuse some of the lateral movement techniques…

    Read More »
  • Blog

    Cisco is jailbreaking AI models so you don’t have to worry about it

    Cisco has launched a new AI Defense security solution it says covers the entire range of potential LLM security threats to help businesses implement generative AI across their organization with confidence. As firms rush to deploy generative AI tools, be that through internally developed models, customized APIs, or external applications, they significantly increase their attack surface – and Cisco is…

    Read More »
Back to top button
close