CrowdSec reports a new wave of active operation of CVE-2025-20281, an NCE-type critical vulnerability affecting Cisco Identity Services Engine, noted CVSS 10.0. An opportunistic resurgence was observed from 23 February 2026, the attackers now integrating this exploit into automated attack kits. For organizations that have not yet applied the patches, [...]
This story is only covered by news sources that have yet to be evaluated by the independent media monitoring agencies we use to assess the quality and reliability of news outlets on our platform. Learn more here.
CrowdSec reports a new wave of active operation of CVE-2025-20281, an NCE-type critical vulnerability affecting Cisco Identity Services Engine, noted CVSS 10.0. An opportunistic resurgence was observed from 23 February 2026, the attackers now integrating this exploit into automated attack kits. For organizations that have not yet applied the patches, [...]