CYBERSECURITYTRACKER
TRACKING7,811 stories in this site build1,697 vulnerability news stories in this site build
Permanent story citation

'Sandworm' Chains Cisco Vulnerabilities to Deploy Cyclops Blink

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 7295

As cited

Copy frozen at (site build).

threat intel

'Sandworm' Chains Cisco Vulnerabilities to Deploy Cyclops Blink

Sandworm, a Russian-linked threat group, is distributing an upgraded variant of Cyclops Blink botnet malware by exploiting Cisco vulnerabilities. The FBI previously disrupted the original botnet in 2022, but the group has rearmed with an enhanced version of the malware.

Why it matters: Organizations using Cisco devices are at immediate risk of botnet infection and remote compromise through this attack chain; patching affected Cisco products urgently is necessary to prevent exploitation.

VendorsCisco
Actorssandworm
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary