Cisco’s ArcaneDoor Vulnerabilities: Patch Now or Hackers Will Party!

Cisco released security updates to tackle ArcaneDoor exploitation in Cisco ASA devices and Firepower Threat Defense software. Active exploits of CVE-2024-20353 and CVE-2024-20359 have been reported.

Hot Take:

If you’re still running your Cisco ASA and FTD software without the latest updates, you might as well put out a welcome mat for hackers. “Come in, we’re open!” isn’t a sign you want to hang on your firewall.

Key Points:

  • Three vulnerabilities (CVE-2024-20353, CVE-2024-20359, CVE-2024-20358) in Cisco ASA and FTD software.
  • Active exploitation of CVE-2024-20353 and CVE-2024-20359 reported.
  • Updates released to address these vulnerabilities.
  • CISA urges immediate action to apply updates and check for malicious activity.
  • Findings should be reported to CISA.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here