U.S. CISA adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog

2026-03-17T02:51:49Zb258dbb8136bbec4473e249a69b3638390091a2128f159c3f87d66ca4e39953f
APTAccessibility APIAdvanced Protection ModeAndroid 17AppArmorCISACVE-2025-47813CrackArmorDRILLAPPEdge debuggingFBIKnown Exploited VulnerabilitiesLaundry BearPayload RansomwareRoyal Bahrain HospitalSignal account takeoverStarbucks data breachSteam malwareUAC-0190Wing FTP Serverphishingprivilege escalation

What happened

This feed aggregates multiple security incidents and research: CISA added a Wing FTP Server information-disclosure flaw (CVE-2025-47813, CVSS 4.3) to its Known Exploited Vulnerabilities catalog. A Russia-linked APT (Laundry Bear/UAC-0190) deployed a DRILLAPP backdoor against Ukrainian targets, abusing Microsoft Edge debugging for stealth. The FBI is investigating malware-infected Steam games (May 2024–Jan 2026) and seeking impacted gamers. High-profile account-takeover activity targeted Signal/WhatsApp users in Germany. Android 17 introduces an Advanced Protection Mode restriction to prevent非‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
b258dbb8136bbec4473e249a69b3638390091a2128f159c3f87d66ca4e39953f
Enrichment time
2026-03-17T02:51:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.