View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

CISA warns of active exploitation of critical Windows IKE RCE flaw

๐Ÿšจ ACTIVE EXPLOITATION

  • CISA says attackers are exploiting critical Windows IKE RCE flaw
    Attackers are exploiting a critical Windows IKE Service Extensions flaw for remote code execution.

    • Affects Windows 10, Windows 11, and Windows Server systems running IKE Service Extensions.
    • CVE-2026-33824 is a CVSS 9.8 double-free vulnerability enabling unauthenticated remote code execution.
    • The attack targets internet-reachable IKE responders over UDP ports 500 and 4500.
    • Unit 42 observed a Chinese-speaking actor manually sending reverse-shell callbacks to three IKE VPN endpoints.
      ๐Ÿ“„ Source: msrc.microsoft.com ยท ๐Ÿ“Ž Coverage: blog.gridinsoft.com ยท ๐Ÿ‘ via BleepingComputer
  • CISA flags exploited Microsoft, VMware and Apple vulnerabilities
    CISA added four exploited vulnerabilities affecting Microsoft, VMware and Apple products to its KEV catalog.

    • Microsoft Windows IKE, SharePoint, VMware vCenter and Apple macOS Screen Sharing users are affected.
    • CVE-2026-33824 enables remote unauthenticated code execution through crafted packets; CVE-2026-55040 enables SharePoint authentication bypass.
    • CVE-2026-59310 allows unauthenticated vCenter directory traversal and code execution, followed by reverse SSH deployment.
    • CVE-2026-65400 bypasses macOS Screen Sharing authentication, enabling root access and Monero mining.
      ๐Ÿ“„ Source: cisa.gov ยท ๐Ÿ“Ž Coverage: securityweek.com ยท ๐Ÿ‘ via SecurityWeek

๐Ÿ•ต๏ธ RESEARCH & DEEP DIVES

๐Ÿ“‹ ADVISORIES

๐Ÿ“‹ ADVISORIES

  • ๐Ÿ“„ Source for Microsoft Links 30+ Rotating Domains to MacSync Stealer โ€” rstcloud.com

๐Ÿ”“ CVEs & KEV

  • CVE-2026-75900 โ€” CVSS 6.1 โ€” Swtpm: swtpm: out-of-bounds read in swtpm_nvram_checkheader due to sizeof(poi...

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check