Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    What the polls say about how Americans are using AI

    Huawei Mate 80 Pro confirmed for Malaysia launch

    ASUS Showcases 2026 AI Copilot+ PC Lineup in Malaysia Led by New Zenbook and ProArt Series

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      What the polls say about how Americans are using AI

      February 27, 2026

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026
    • Business

      How Smarsh built an AI front door for regulated industries — and drove 59% self-service adoption

      February 24, 2026

      Where MENA CIOs draw the line on AI sovereignty

      February 24, 2026

      Ex-President’s shift away from Xbox consoles to cloud gaming reportedly caused friction

      February 24, 2026

      Gartner: Why neoclouds are the future of GPU-as-a-Service

      February 21, 2026

      The HDD brand that brought you the 1.8-inch, 2.5-inch, and 3.5-inch hard drives is now back with a $19 pocket-sized personal cloud for your smartphones

      February 12, 2026
    • Crypto

      Crypto Market Rebound Wipes Out Nearly $500 Million in Short Positions

      February 26, 2026

      Ethereum Climbs Above $2000: Investors Step In With Fresh Accumulation

      February 26, 2026

      Mutuum Finance (MUTM) Prepares New Feature Expansion for V1 Protocol

      February 26, 2026

      Bitcoin Rebounds Toward $70,000, But Is It a Momentary Relief or Slow Bull Run Signal?

      February 26, 2026

      IMF: US Inflation Won’t Hit Fed Target Until 2027, Delaying Rate Cuts

      February 26, 2026
    • Technology

      Resident Evil Requiem Steam player count breaks RE4’s 168K record 30 mins after release

      February 27, 2026

      Xgimi Titan 4K 5000-lumen dual-laser projector arrives with Dolby Vision, IMAX Enhanced, and DTS:X certifications

      February 27, 2026

      Razer introduces laptop sleeve featuring dual MagSafe charging pads

      February 27, 2026

      Garmin smartwatch users get new GPS-related alerts in update

      February 27, 2026

      Possible new Google Pixel flagship rears its head with Tensor G6

      February 27, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Hackers exploit Cisco SNMP flaw to deploy rootkit on switches
    Technology

    Hackers exploit Cisco SNMP flaw to deploy rootkit on switches

    TechAiVerseBy TechAiVerseOctober 17, 2025No Comments2 Mins Read0 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Hackers exploit Cisco SNMP flaw to deploy rootkit on switches
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Hackers exploit Cisco SNMP flaw to deploy rootkit on switches

    Threat actors exploited a recently patched remote code execution vulnerability (CVE-2025-20352) in older, unprotected Cisco networking devices to deploy a Linux rootkit and gain persistent access.

    The security issue leveraged in the attacks affects the Simple Network Management Protocol (SNMP) in Cisco IOS and IOS XE and leads to RCE if the attacker has root privileges.

    According to cybersecurity company Trend Micro, the attacks targeted Cisco 9400, 9300, and legacy 3750G series devices that did not have endpoint detection response solutions.

    In the original bulletin for CVE-2025-20352, updated on October 6, Cisco tagged the vulnerability as exploited as a zero day, with the company’s Product Security Incident Response Team (PSIRT) saying it was “aware of successful exploitation.”

    Trend Micro researchers track the attacks under the name ‘Operation Zero Disco’ because the malware sets a universal access password that contains the word “disco.”

    The report from Trend Micro notes that the threat actor also attempted to exploit CVE-2017-3881, a seven-year-old vulnerability in the Cluster Management Protocol code in IOS and IOS XE.

    The rootkit planted on vulnerable systems features a UDP controller that can listen on any port, toggle or delete logs, bypass AAA and VTY ACLs, enable/disable the universal password, hide running configuration items, and reset the last write timestamp for them.

    UDP controller functions
    Source: Trend Micro

    In a simulated attack, the researchers showed that it is possible to disable logging, impersonate a waystation IP via ARP spoofing, bypass internal firewall rules, and move laterally between VLANs.

    Overview of the simulated attack
    Source: Trend Micro

    Although newer switches are more resistant to these attacks due to Address Space Layout Randomization (ASLR) protection, Trend Micro says that they are not immune and persistent targeting could compromise them.

    After deploying the rootkit, the malware “installs several hooks onto the IOSd, which results in fileless components disappearing after a reboot,” the researchers say.

    The researchers were able to recover both 32-bit and 64-bit variants of the SNMP exploit.

    Trend Micro notes that there currently exists no tool that can reliably flag a compromised Cisco switch from these attacks. If there is suspicion of a hack, the recommendation is to perform a low-level firmware and ROM region investigation.

    A list of the indicators of compromise (IoCs) associated with ‘Operation Zero Disco’ can be found here.


    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleMicrosoft disrupts ransomware attacks targeting Teams users
    Next Article Have I Been Pwned: Prosper data breach impacts 17.6 million accounts
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Resident Evil Requiem Steam player count breaks RE4’s 168K record 30 mins after release

    February 27, 2026

    Xgimi Titan 4K 5000-lumen dual-laser projector arrives with Dolby Vision, IMAX Enhanced, and DTS:X certifications

    February 27, 2026

    Razer introduces laptop sleeve featuring dual MagSafe charging pads

    February 27, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025696 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025280 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025162 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025122 Views
    Don't Miss
    Artificial Intelligence February 27, 2026

    What the polls say about how Americans are using AI

    What the polls say about how Americans are using AIListen to this article with a…

    Huawei Mate 80 Pro confirmed for Malaysia launch

    ASUS Showcases 2026 AI Copilot+ PC Lineup in Malaysia Led by New Zenbook and ProArt Series

    Resident Evil Requiem Steam player count breaks RE4’s 168K record 30 mins after release

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    What the polls say about how Americans are using AI

    February 27, 20262 Views

    Huawei Mate 80 Pro confirmed for Malaysia launch

    February 27, 20262 Views

    ASUS Showcases 2026 AI Copilot+ PC Lineup in Malaysia Led by New Zenbook and ProArt Series

    February 27, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    Travis Kalanick thinks Uber screwed up: “Wish we had an autonomous ride-sharing product”

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.