Attackers exploit SolarWinds vulnerability to deploy ransomware
Attackers exploited SolarWinds Web Help Desk vulnerabilities to deploy RMM agents and Velociraptor as C2 infrastructure, conduct reconnaissance, and prepare systems for ransomware.
SolarWinds Releases Hotfix for Critical CVE-2025-26399 Remote Code Execution Flaw
Critical unauthenticated deserialization vulnerability CVE-2025-26399 in SolarWinds Web Help Desk allows remote code execution as SYSTEM; update to 12.8.7 HF1.