![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjJ6XWpYws2dOW80uSy4fmXkLO7pv-HAVa_5Zyf5YDT-2Ym-9Z2HNaTAigVhozKez9-nKSHI2yXYQ838lrRjj3JwRHgo0aUHk-0v8e4cL88bgqOtPD3mVDeKdQ0XHBv7uzbj9GHvxXW7XxVglReGwD_ko4S2ci5ndbyurlOyIA0rQhJhtvpQj9Znu5p8hN1/s1600/cisco.png)
Details have emerged about a China-nexus threat group’s exploitation of a recently disclosed, now-patched security flaw in Cisco switches as a zero-day to seize control of the appliance and evade detection.
The activity, attributed to Velvet Ant, was observed early this year and involved the weaponization of CVE-2024-20399 (CVSS score: 6.0) to deliver bespoke malware and gain extensive control
Source:: The Hackers News