Cisco
-
Blog
Critical Cisco Smart Licensing Utility flaws now exploited in attacks
Attackers have started targeting Cisco Smart Licensing Utility (CSLU) instances unpatched against a vulnerability exposing a built-in backdoor admin account. The CSLU Windows application allows admins to manage licenses and linked products on-premises without connecting them to Cisco’s cloud-based Smart Software Manager solution. Cisco patched this security flaw (tracked as CVE-2024-20439) in September, describing it as “an undocumented static user…
Read More » -
Blog
Cisco unveils new agentic AI tools to improve customer and employee experience
Cisco wants its new agentic AI tools to anticipate the needs of staff and customers alike as the firm unveils a new suite of agentic offerings. The tech giant has announced the general availability of the Webex AI Agent, a tool targeted at customer service, as well as other solutions for collaboration devices and employee experiences. “Cisco is driving toward…
Read More » -
Blog
Cisco IOS XR vulnerability lets attackers crash BGP on routers
Cisco has patched a denial of service (DoS) vulnerability that lets attackers crash the Border Gateway Protocol (BGP) process on IOS XR routers with a single BGP update message. IOS XR runs on the company’s carrier-grade, Network Convergence System (NCS), and Carrier Routing System (CRS) series of routers, such as the ASR 9000, NCS 5500, and 8000 series. This high-severity flaw (tracked as CVE-2025-20115) was found…
Read More » -
Blog
Cisco warns of Webex for BroadWorks flaw exposing credentials
Cisco warned customers today of a vulnerability in Webex for BroadWorks that could let unauthenticated attackers access credentials remotely. Webex for BroadWorks integrates Cisco Webex’s video conferencing and collaboration features with the BroadWorks unified communications platform. While the company has yet to assign a CVE ID to track this security issue, Cisco says in a Tuesday security advisory that it already pushed…
Read More » -
Blog
CISA tags Windows, Cisco vulnerabilities as actively exploited
CISA has warned US federal agencies to secure their systems against attacks exploiting vulnerabilities in Cisco and Windows systems. While the cybersecurity agency has tagged these flaws as actively exploited in the wild, it has yet to provide specific details regarding this malicious activity and who is behind it. The first flaw (tracked as CVE-2023-20118) enables attackers to execute arbitrary…
Read More » -
Blog
Chinese hackers breach more US telecoms via unpatched Cisco routers
China’s Salt Typhoon hackers are still actively targeting telecoms worldwide and have breached more U.S. telecommunications providers via unpatched Cisco IOS XE network devices. Recorded Future’s Insikt Group threat research division states that the Chinese hacking group (tracked Salt Typhoon and RedMike) has exploited the CVE-2023-20198 privilege escalation and CVE-2023-20273 Web UI command injection vulnerabilities. These ongoing attacks have already…
Read More » -
Blog
‘Divorced from reality’: HPE slams DOJ over bid to block Juniper deal, claims move will benefit Cisco
HPE has hit out at the US Department of Justice (DOJ) over its attempt to block the acquisition of Juniper Networks, suggesting the move is “divorced from reality” and will benefit competitors in the space. HPE bid $14 billion for Juniper Networks in January 2024, with the deal seen as a play by the networking giant to take advantage of…
Read More » -
Blog
Cisco polishes its platform but the network is still king
Last year, Cisco Live 2024 was my first proper introduction to the company in all its glory and if I’m honest I was somewhat overwhelmed by its scale and breadth. Fortunately for me, the overriding theme in Amsterdam that year was tightly focused on unifying Cisco’s byzantine product ecosystem under one integrated platform. In 2024, the firm’s foremost storyteller Jeetu…
Read More » -
Blog
Cisco claims new smart switches provide next-level perimeter defense
Cisco’s ‘security everywhere’ mantra has just taken on new meaning with the launch of a series of smart network switches it says will redefine the way firewalls, the old stalwart of cybersecurity, work entirely. Unveiled at Cisco Live in Amsterdam, Cisco said its N9300 Smart Switches will introduce new capabilities to help businesses defuse some of the lateral movement techniques…
Read More » -
Blog
Cisco is jailbreaking AI models so you don’t have to worry about it
Cisco has launched a new AI Defense security solution it says covers the entire range of potential LLM security threats to help businesses implement generative AI across their organization with confidence. As firms rush to deploy generative AI tools, be that through internally developed models, customized APIs, or external applications, they significantly increase their attack surface – and Cisco is…
Read More »