Saturday, 1 November, 2025
CISA Warns of Linux Kernel Zero-Day Exploited for Ransomware

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert about a critical Use-After-Free vulnerability, CVE-2024-1086, in the Linux kernel's netfilter: nf_tables component. Threat actors are actively exploiting this flaw to escalate local privileges on unpatched Linux servers, ultimately enabling the deployment of ransomware. CISA advises immediate patching to kernel version 6.1.77 or later for widely-used distributions.
Read full story at Cybersecurity News