Hackers Exploit Zero-Day Flaw in Sitecore for Backdoors and Malware

1 min read
Source: BleepingComputer
Hackers Exploit Zero-Day Flaw in Sitecore for Backdoors and Malware
Photo: BleepingComputer
TL;DR Summary

Threat actors exploited a zero-day vulnerability in legacy Sitecore systems (CVE-2025-53690) involving a ViewState deserialization flaw caused by reused sample ASP.NET machine keys, leading to remote code execution and deployment of reconnaissance malware WeepSteel. The attack involved multi-stage exploits including privilege escalation and persistence techniques. Sitecore recommends immediate replacement and encryption of static machine keys to mitigate the vulnerability.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

86%

41759 words

Want the full story? Read the original article

Read on BleepingComputer