Just in:
Cornell robot electrifies weed control race // Trashure Hunt Opens at Raffles City, Turning Singapore’s Waste Challenge Into Public Art // EVB Successfully Concludes Power2Drive Europe 2026 With Advanced EV Charging Solutions // Biosphere Labs strengthens Abu Dhabi biotech hub // HKRITA Signs MoU with Jeanologia and Looptworks to Establish the Green Machine Circular Textile Ecosystem, Marking a Breakthrough in Scalable Textile Recycling // Emirates SkyCargo widens Asian freight reach // Valve’s pricier Steam Machine tests PC ambitions // GEMS enrolment softens as war delays relocations // SCG Showcases Green Innovations and Low-Carbon Cement at Cemtech Asia 2026, Reinforcing ASEAN Leadership and Commitment to the Net Zero Pathway // Gaslight malware exposes AI triage blind spot // Singapore weighs AI role in boardrooms // Mannings Continues “Safe Disposal of Unused Medicines Programme” for the Fourth Year Partnering with Community Organisations to Expand Network to 75 Collection Points // Impossible Marketing Unveils ImpossiblePlus™ AI SEO Solution for Singapore Businesses // Dubai summit sets global sports agenda // Pulsar International (“Pulsar”) announces agreement as an authorized reseller of Amazon Leo to bring high-speed satellite internet to commercial maritime customers // ADNOC Drilling puts AI rig to work early // Avalanche forms payments alliance with VanEck // ADNOC group secures Bab gas cap concession // AI browsers face new credential leak warning // Strained Atmosphere Adds To Suspicion About New FCRA Rule Changes //

Cisco warns of fresh cyber intrusions

Cisco has said that a sophisticated group of China-linked hackers is actively exploiting a previously unknown vulnerability to breach the networks of its customers, raising concerns across governments and large enterprises that rely on the company’s equipment for critical communications and data traffic.

The company disclosed that the attackers have been using a zero-day flaw to gain unauthorised access to affected systems before patches were available, allowing them to move laterally inside networks, exfiltrate data and establish long-term persistence. Cisco said the activity was identified through a combination of internal telemetry, customer reports and threat-hunting operations, prompting an urgent security advisory and mitigation guidance.

According to the company, the exploit targets components widely deployed in enterprise and service-provider environments, increasing the potential scale of exposure. Cisco said it had not found evidence that the vulnerability was used in mass, automated attacks, suggesting the campaign was selective and intelligence-driven. Security teams were advised to assume that compromised devices could have been used as entry points for deeper network access rather than isolated incidents.

ADVERTISEMENT

The hackers are assessed to be linked to a long-running cluster associated by Western governments and cybersecurity firms with China’s state-aligned cyber-espionage apparatus. Such groups are known for patient, stealthy operations that prioritise access to strategic networks over immediate financial gain. Cisco did not name the group but said the tactics, techniques and procedures matched patterns previously observed in campaigns targeting telecommunications providers, government agencies and defence-linked contractors.

The disclosure adds to mounting evidence that network infrastructure vendors remain prime targets for advanced threat actors. By compromising routers, switches or security appliances, attackers can gain visibility into vast amounts of traffic while evading traditional endpoint detection tools. Analysts say this approach allows intruders to remain undetected for extended periods, particularly in environments where network devices are patched less frequently than servers or user machines.

Cisco said it has released software updates to address the flaw and urged customers to apply patches immediately. For systems that cannot be updated at once, the company recommended temporary workarounds, including disabling exposed services and tightening access controls. It also advised organisations to review logs for signs of unusual authentication activity, configuration changes or outbound connections to unfamiliar destinations.

The incident underscores a broader trend in which zero-day vulnerabilities are increasingly weaponised by state-linked actors rather than reserved for criminal markets. Researchers note that such flaws are valuable for espionage because they allow access without triggering known signatures. The speed with which the vulnerability was exploited suggests prior knowledge, raising questions about how long it may have been discovered and stockpiled before use.

Governments have repeatedly warned that cyber operations form an integral part of strategic competition, particularly in the contest for technological and geopolitical influence. Accusations of state-backed hacking are routinely denied by Beijing, which has said it opposes all forms of cybercrime and itself faces persistent attacks. Nonetheless, officials in several countries have pointed to a pattern of intrusions aimed at intellectual property, critical infrastructure and policy-making institutions.

For enterprises, the episode highlights the difficulty of defending against threats that originate deep within trusted infrastructure. Security specialists say organisations should treat network devices as high-value assets requiring the same level of monitoring as servers and cloud workloads. This includes continuous vulnerability scanning, rapid patch management and network segmentation to limit the impact of a single compromised component.

Cisco said it is working closely with customers and public-sector partners to share indicators of compromise and improve collective defences. The company also said it has expanded its threat intelligence efforts to detect similar exploitation attempts earlier, acknowledging that vendors play a central role in the security posture of global networks.



Notice an issue?

Arabian Post strives to deliver the most accurate and reliable information to its readers. If you believe you have identified an error or inconsistency in this article, please don't hesitate to contact our editorial team at editor[at]thearabianpost[dot]com. We are committed to promptly addressing any concerns and ensuring the highest level of journalistic integrity.


ADVERTISEMENT
Social Media Auto Publish Powered By : XYZScripts.com
Just in:
Mannings Continues “Safe Disposal of Unused Medicines Programme” for the Fourth Year Partnering with Community Organisations to Expand Network to 75 Collection Points // Dubai summit sets global sports agenda // Valve’s pricier Steam Machine tests PC ambitions // Impossible Marketing Unveils ImpossiblePlus™ AI SEO Solution for Singapore Businesses // Avalanche forms payments alliance with VanEck // AD Ports tightens grip on GFS // Pulsar International (“Pulsar”) announces agreement as an authorized reseller of Amazon Leo to bring high-speed satellite internet to commercial maritime customers // HKRITA Signs MoU with Jeanologia and Looptworks to Establish the Green Machine Circular Textile Ecosystem, Marking a Breakthrough in Scalable Textile Recycling // Trashure Hunt Opens at Raffles City, Turning Singapore’s Waste Challenge Into Public Art // AI browsers face new credential leak warning // Foreign bank branch fined over compliance failures // HKSTP Leads Largest-Ever Hong Kong Delegation to BIO 2026 Showcasing Life and Health Tech Strength // My Wallet broadens reach beyond TON // UAE fines foreign bank branch over compliance lapses // GTA 6 pre-orders fuel scam warnings // MuddyWater masks espionage behind ransomware playbook // J.P. Morgan pares Brent outlook on softer demand // EVB Successfully Concludes Power2Drive Europe 2026 With Advanced EV Charging Solutions // Gaslight malware exposes AI triage blind spot // ADNOC Drilling puts AI rig to work early //