Actively exploited Cisco 0day with maximum severity gives full network control
L: https://arstechnica.com/security/2023/10/actively-exploited-cisco-0-day-with-maximum-10-severity-gives-full-network-control/
C: https://news.ycombinator.com/item?id=37906156
posted on 2023.10.16 at 16:34:14 (c=0, p=4)
“Cisco buried the lede.” >10,000 network devices backdoored through unpatched 0-day

An unknown threat actor is exploiting the vulnerability to create admin accounts.

Ars Technica
@hkrn ok if you're putting the web GUI on the internet...

@hkrn

Is this a new one since last weeks patch?