CyberHighSingle-sourceAccelerating
7.4
MikroTik Patches Critical Flaws Chained to Hack Routers
SecurityWeek·3 days ago
A high-severity, unauthenticated code execution vulnerability in Fortinet products (CVE-2025-25249), patched in January 2026, is now being actively exploited in attacks deploying the PivotC2 remote access trojan. The exploitation indicates a gap between patch availability and deployment, leaving unpatched systems exposed. This matters because Fortinet devices are widely used in enterprise and government networks, and successful exploitation could lead to network compromise and lateral movement.