Active exploitation of SolarWinds Serv-U DoS vulnerability disrupts critical file transfers
By
Dirk Knop
A second-rack bagel that's nearly first-rack. Tasty stuff.
Summary
SolarWinds warns that attackers are actively exploiting a denial-of-service (DoS) vulnerability in Serv-U managed file transfer software. The vulnerability can paralyze the system and disrupt data exchange in organizations that rely on Serv-U for critical data transfers. This follows a pattern of cybercriminal interest in file transfer software, similar to the Cl0p gang's attacks on Progress MOVEit. CISA has confirmed active exploitation of this vulnerability.
Key quotes
· 3 pulledSolarWinds warns in a current vulnerability notice that...
Vulnerabilities in it are often interesting to cybercriminals
In Serv-U, a security vulnerability on the internet is now being attacked, which paralyzes the system and thus data exchange in facilities.
You might also wanna read
Critical cPanel vulnerability under active attack allows full server hijacking
Security researchers have discovered a critical vulnerability in cPanel and WebHost Manager (WHM), widely used web server management softwar
Proof-of-Concept Exploit Released for Critical NGINX Heap Buffer Overflow (CVE-2026-42945)
A proof-of-concept exploit for CVE-2026-42945, a critical heap buffer overflow vulnerability in NGINX's ngx_http_rewrite_module that has exi
Critical Authentication Bypass Vulnerability Discovered in cPanel & WHM (CVE-2026-41940)
watchTowr Labs reports on a critical authentication bypass vulnerability (CVE-2026-41940) in cPanel & WHM, a widely-used web hosting control
watchTowr Labs·1mo agoEarly Exploitation of React2Shell Vulnerability (CVE-2025-55182) Targets Critical Infrastructure
The article details early exploitation activity following the public disclosure of the critical React2Shell vulnerability (CVE-2025-55182).
Critical Chromium Browser Vulnerability: DoS Attack via document.title API Exploitation
The article details 'Brash,' a critical vulnerability in Chromium-based browsers that allows denial-of-service attacks by exploiting the doc
Analysis of Critical .NET Vulnerability CVE-2025-55315: HTTP Request Smuggling Explained
This article provides an in-depth technical analysis of CVE-2025-55315, a critical .NET vulnerability with a CVSS score of 9.9. The author e
