U.S. CISA adds a flaw in Wing FTP Server to its Known Exploited Vulnerabilities catalog
2026-03-17T02:51:49Z•b258dbb8136bbec4473e249a69b3638390091a2128f159c3f87d66ca4e39953f
APTAccessibility APIAdvanced Protection ModeAndroid 17AppArmorCISACVE-2025-47813CrackArmorDRILLAPPEdge debuggingFBIKnown Exploited VulnerabilitiesLaundry BearPayload RansomwareRoyal Bahrain HospitalSignal account takeoverStarbucks data breachSteam malwareUAC-0190Wing FTP Serverphishingprivilege escalation
What happened
This feed aggregates multiple security incidents and research: CISA added a Wing FTP Server information-disclosure flaw (CVE-2025-47813, CVSS 4.3) to its Known Exploited Vulnerabilities catalog. A Russia-linked APT (Laundry Bear/UAC-0190) deployed a DRILLAPP backdoor against Ukrainian targets, abusing Microsoft Edge debugging for stealth. The FBI is investigating malware-infected Steam games (May 2024–Jan 2026) and seeking impacted gamers. High-profile account-takeover activity targeted Signal/WhatsApp users in Germany. Android 17 introduces an Advanced Protection Mode restriction to prevent非‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- b258dbb8136bbec4473e249a69b3638390091a2128f159c3f87d66ca4e39953f
- Enrichment time
- 2026-03-17T02:51:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.