Close Menu
The Financial News 247The Financial News 247
  • Home
  • News
  • Business
  • Finance
  • Companies
  • Investing
  • Markets
  • Lifestyle
  • Tech
  • More
    • Opinion
    • Climate
    • Web Stories
    • Spotlight
    • Press Release
What's On
By Reverse-Engineering Shahed Drone, U.S. Gives Iran A Dose Of Its Own Medicine

By Reverse-Engineering Shahed Drone, U.S. Gives Iran A Dose Of Its Own Medicine

December 7, 2025
Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

December 7, 2025
Aurora Could Be Seen From These 15 States Sunday

Aurora Could Be Seen From These 15 States Sunday

December 7, 2025
Lockout Looms For 2027 Season If MLB, Union Can’t Come To Terms

Lockout Looms For 2027 Season If MLB, Union Can’t Come To Terms

December 7, 2025
They Send Messages Via The Air

They Send Messages Via The Air

December 7, 2025
Facebook X (Twitter) Instagram
The Financial News 247The Financial News 247
Demo
  • Home
  • News
  • Business
  • Finance
  • Companies
  • Investing
  • Markets
  • Lifestyle
  • Tech
  • More
    • Opinion
    • Climate
    • Web Stories
    • Spotlight
    • Press Release
The Financial News 247The Financial News 247
Home » Amazon CISO Confirms Hacker Exploit Used 2 Zero-Day Attacks

Amazon CISO Confirms Hacker Exploit Used 2 Zero-Day Attacks

By News RoomNovember 14, 2025No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn WhatsApp Telegram Reddit Email Tumblr
Amazon CISO Confirms Hacker Exploit Used 2 Zero-Day Attacks
Share
Facebook Twitter LinkedIn Pinterest Email

With Black Friday fast approaching, and the security issues surrounding it already making headlines, any mention of Amazon in an exploit story is bound to get the pulse racing. But you can relax, as this isn’t another Amazon Web Services authentication issue, nor a viral, if totally without legitimacy, Amazon Ring hacking claim. So, what then are the CVE-2025-5777 and CVE-2025-20337 zero-day vulnerabilities used in hack attacks by an “advanced threat actor” that the Amazon Threat Intelligence team has newly confirmed? Here’s everything you need to know.

Amazon Threat Intelligence Confirms Advanced Hacker Exploiting Two Zero-Day Vulnerabilities

Not all zero-day threat stories are worth getting unduly excited about. Some, such as the CVE-2025-5777 and CVE-2025-20337 zero-days that Amazon has confirmed were used simultaneously in an attempt to access critical identity and network access control infrastructure, however, are a different kettle of pre-authentication attack concern.

Amazon’s chief information security officer and vice president of security engineering, CJ Moses, has published confirmation of an advanced persistent attacker using two separate and previously undisclosed zero-day vulnerabilities in an exploit campaign against those systems used by enterprises to enforce their security policies and manage authentication.

Amazon MadPot Honeypot Strikes Again

The hacking campaign was caught by the Amazon MadPot honeypot, a decoy network designed purely to lure unsuspecting attackers into thinking they are hard enough and clever enough to succeed, which detected “exploitation attempts for the Citrix Bleed Two vulnerability (CVE-2025-5777) prior to public disclosure,” Moses said. Analysis by the Amazon security boffins further identified “an anomalous payload targeting a previously undocumented endpoint in Cisco ISE that used vulnerable deserialization logic.” That was, it turned out, another zero-day. CVE-2025-20337 enabled attackers to get pre-authentication remote code execution on Cisco ISE deployments, and as a result, administrator access to compromised systems. “What made this discovery particularly concerning,” Moses warned, “was that exploitation was occurring in the wild before Cisco had assigned a CVE number or released comprehensive patches across all affected branches of Cisco ISE.”

Amazon Security Recommendations, Citrix And Cisco Patches Already Available

Moses said that security teams should use this information as “a reminder that critical infrastructure components like identity management systems and remote access gateways remain prime targets for threat actors.” Amazon recommends limiting access, through firewalls or layered access, to privileged security appliance endpoints such as management portals. You can find out more about the zero-days and patches directly from Citrix and Cisco.

Amazon APT Amazon Hack Amazon Security Amazon security report Amazon Threat Intelligence AWS Cisco Citrix Bleed Two CVE-2025-20337 CVE-2025-5777
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related News

Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

December 7, 2025
They Send Messages Via The Air

They Send Messages Via The Air

December 7, 2025
FBI Issues Critical Facebook, LinkedIn And X Photo Attack Warning

FBI Issues Critical Facebook, LinkedIn And X Photo Attack Warning

December 7, 2025
See Jupiter, The Moon, Aurora And ‘Shooting Stars’ On Sunday

See Jupiter, The Moon, Aurora And ‘Shooting Stars’ On Sunday

December 7, 2025
FBI Warns iPhone And Android Users—Stop Making These Calls

FBI Warns iPhone And Android Users—Stop Making These Calls

December 7, 2025
NYT Mini Crossword Hints, Answers For Sunday, December 7

NYT Mini Crossword Hints, Answers For Sunday, December 7

December 7, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

Dartmouth Data Breach Exposes 40,000 Social Security Numbers In Cl0p’s Oracle Rampage

Tech December 7, 2025

Dartmouth College has confirmed that a three-day cyberattack in August compromised the personal information of…

Aurora Could Be Seen From These 15 States Sunday

Aurora Could Be Seen From These 15 States Sunday

December 7, 2025
Lockout Looms For 2027 Season If MLB, Union Can’t Come To Terms

Lockout Looms For 2027 Season If MLB, Union Can’t Come To Terms

December 7, 2025
They Send Messages Via The Air

They Send Messages Via The Air

December 7, 2025
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Our Picks
Why Is Zohran Mamdani Ridiculed, While Kevin Hassett Is Revered?

Why Is Zohran Mamdani Ridiculed, While Kevin Hassett Is Revered?

December 7, 2025
FBI Issues Critical Facebook, LinkedIn And X Photo Attack Warning

FBI Issues Critical Facebook, LinkedIn And X Photo Attack Warning

December 7, 2025
Why Mark Cuban’s Drug Cost Message Resonates: It’s Simple

Why Mark Cuban’s Drug Cost Message Resonates: It’s Simple

December 7, 2025
Younger Americans making riskier investments, nonessential purchases for tragic reason

Younger Americans making riskier investments, nonessential purchases for tragic reason

December 7, 2025
The Financial News 247
Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact us
© 2025 The Financial 247. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.