Zero‑Day Attacks on Enterprise Software Reach Record High, Google Warns
2026-03-06T14:52:19Z•3bd9f83093ab25ae266bb53345aaa6fba430ea5a52118c035d75bd08040c5ca0
AI-enabled-attacksAeternumCiscoClawJackedContextCrushCorunaFreeScoutIran-linked-activityLazarusLeakBaseMail2ShellNorth-Korea-APT37SD-WANSecure-Firewall-Managementblockchain-C2botnetcritical-vulnerabilitiesenterprise-securityexploit-kitiOS-exploitinsider-risknetworking-appliancesransomware-Medusatycoon2fazero-day
What happened
Infosecurity Magazine roundup highlights a sharp rise in high-risk activity: record numbers of zero‑day attacks in 2025—many targeting security and networking appliances—alongside multiple actively exploited critical flaws (notably ContextCrush in Context7 MCP Server, Mail2Shell/FreeScout zero‑click RCE and a Cisco SD‑WAN/Catalyst zero‑day), and large patch sets from Cisco including maximum‑severity fixes. Threat actors are exploiting AI (insider misuse, covert AI agent hijacking via “ClawJacked”), targeting mobile users with the Coruna iPhone exploit kit, shifting infrastructure to resilient/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 3bd9f83093ab25ae266bb53345aaa6fba430ea5a52118c035d75bd08040c5ca0
- Enrichment time
- 2026-03-06T14:52:19Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.