← Front PageThreat Intel Desk
Threat Intel
FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches
FIRESTARTER backdoor compromises federal Cisco Firepower device, persists through security patches and updates.
Summary written by editorial AI · Source link below
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed federal civilian agency's Cisco Firepower device running Adaptive Security Appliance (ASA) software was compromised in September 2025 with a new malware called FIRESTARTER. FIRESTARTER, per CISA and the U.K.'s National Cyber Security Centre (NCSC), is assessed to be a backdoor designed for remote access
Continue at the source
Read the full report at THN (Feedburner)External link — opens at THN (Feedburner) in a new tab.
§
Continue with
More from the Threat Intel Desk
- Attackers conceal phishing lures using invisible Unicode characters4d
- Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication5d
- Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner5d
- Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials5d
- Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain5d