Microsoft Connects GoAnywhere Zero-Day to Ransomware Campaigns

1 min read
Source: The Hacker News
Microsoft Connects GoAnywhere Zero-Day to Ransomware Campaigns
Photo: The Hacker News
TL;DR Summary

Microsoft links the threat group Storm-1175 to exploiting a critical deserialization vulnerability in Fortra GoAnywhere (CVE-2025-10035) to deploy Medusa ransomware, with active exploitation since September 2025, involving system compromise, lateral movement, and data exfiltration.

Share this article

Reading Insights

Total Reads

0

Unique Readers

2

Time Saved

2 min

vs 3 min read

Condensed

92%

42734 words

Want the full story? Read the original article

Read on The Hacker News