BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

CISA Adds 5 Flax Typhoon Exploited Flaws to KEV Catalog

CISA adds five flaws exploited by China's Flax Typhoon; federal agencies must patch by October 2026.

  • CISA added five vulnerabilities to its Known Exploited Vulnerabilities catalog after China-linked threat actor Flax Typhoon exploited them to target critical infrastructure
  • The flaws affect ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND, with CVSS scores ranging from 7.2 to 10.0
  • A joint advisory from Australia, Canada, Japan, New Zealand, Spain, the UK, and the US warned of attacks enabled by China-based cybersecurity company Integrity Technology Group
  • Federal agencies must patch or discontinue use of affected software by October 11, 2026

The U.S. Cybersecurity and Infrastructure Security Agency added five security flaws to its Known Exploited Vulnerabilities catalog on Thursday, following their abuse by China-linked threat actor Flax Typhoon. The vulnerabilities range from 2015 to 2023, affecting widely deployed software including ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND.

- Advertisement -

The most severe flaw, CVE-2015-3306, carries a CVSS score of 10.0 and allows remote attackers to read and write arbitrary files via improper access control in ProFTPD. Meanwhile, CVE-2021-3199 enables remote code execution through a path traversal vulnerability in ONLYOFFICE Docs, and CVE-2023-22894 exposes sensitive user details via cleartext storage in Strapi.

The addition coincides with a joint advisory released by Australia, Canada, Japan, New Zealand, Spain, the U.K., and the U.S. warning of attacks enabled by a China-based cybersecurity company known as Integrity Technology Group. These operations have been found to target eight security vulnerabilities to obtain initial access to organizations and siphon sensitive data.

“Chinese government-affiliated actors continue to position themselves within critical infrastructure networks, including operational technology systems, with the aim of disrupting critical functions at a future time of their choosing,” said Acting Executive Assistant Director for Cybersecurity Chris Butera. Exploitation involves scanning tools, cross-site scripting attacks, and password spraying on Microsoft Exchange servers, with persistence established through VPN software and credential exfiltration using scripts.

Three related vulnerabilities already in the KEV catalog include CVE-2014-6278 (Shellshock), CVE-2019-11510 affecting Ivanti Pulse Connect Secure, and CVE-2021-22205 impacting GitLab. Federal agencies must apply patches or discontinue use by October 11, 2026.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Empire Market co-creator gets 40 years for $430M darknet drug sales

Raheim Hamilton, co-creator of darknet marketplace Empire Market, was sentenced to 40 years in...

Musk Slams SoftBank’s $100B AI Fundraise

Musk's xAI is positioning Grok to compete with OpenAI's ChatGPT and Google's GeminiSoftBank is...

Bitcoin, Ether ETF outflows near $1B in October

US spot Bitcoin and Ether ETFs have recorded nearly $1 billion in combined net...

Sepolia goes live with Glamsterdam, gas limit hits 200M

Ethereum's Sepolia testnet activated the Glamsterdam upgrade on October 6, boosting the block gas...

IMF: Tokenization reshapes markets, but risks remain

The IMF warns tokenization could reshape markets but faces legal uncertainty and stability risks.Tokenized...

Must Read

14 Ways On How to Make Money with Cryptocurrency

Many people want to make money with cryptocurrency because they have heard the success stories of people who became millionaires from zero.If you...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading