<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: CrushFTP Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving CrushFTP.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:52 GMT</lastBuildDate><item><title>CrushFTP CVE-2025-31161 Auth Bypass and Post-Exploitation</title><link>https://huntress.com/blog/crushftp-cve-2025-31161-auth-bypass-and-post-exploitation</link><guid isPermaLink="false">cst-879</guid><description>Huntress detected active exploitation of CVE-2025-31161, an authentication bypass flaw in CrushFTP, followed by post-exploitation activity involving MeshCentral and additional malware. The vulnerability allows attackers to bypass authentication controls and establish persistence through secondary tools.</description><pubDate>Fri, 04 Apr 2025 05:00:00 GMT</pubDate></item></channel></rss>