Mmastodon TechnologyCybersecurity first seen 1 d ago, last 1 d ago, peak #9
Huntress warns of active attacks on AhsayCBS backup servers
Original: Huntress reports active exploitation of AhsayCBS CVE-2026-105133 and CVE-2026-105134 chained for auth bypass and OS comm
Security firm Huntress reports attackers are actively exploiting two vulnerabilities in AhsayCBS backup software, chaining CVE-2026-105133 and CVE-2026-105134 to bypass authentication and run operating system commands. Intrusions involve web shell deployment and XMRig cryptocurrency miners, giving attackers persistence on backup servers. Defenders are urged to patch immediately and hunt for indicators of compromise.
Why now: Backup software is high-value infrastructure, and confirmed in-the-wild exploitation of a chain allowing remote command execution raises urgent patching concerns.
HuntressAhsayCBSCVE-2026-105133CVE-2026-105134XMRig
Evidence
- Huntress reports active exploitation of AhsayCBS CVE-2026-105133 and CVE-2026-105134 chained for auth bypass and OS command execution. Attackers deploy web shells and XMRig miners, gaining persistence on backup servers. Patch and hunt for indicators. # AhsayCBS # ThreatIntel #… · cyberworldops@infosec.exchange · 2
API: https://socialmediatrends-api.osmike.com/v1/trends/1642146