CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added seven vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, primarily due to active exploitation by threat actors. These vulnerabilities, including those in SonicWall, JFrog, Berri LiteLLM, and Kestra OSS, are being used to deploy reverse shells, cryptocurrency miners, and steal sensitive information. The attacks highlight a growing trend of AI infrastructure becoming a target for malicious actors seeking to establish persistence, steal API keys, and monetize infected hosts.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in attackers' crosshairs. These vulnerabilities are being actively exploited by threat actors, including those associated with the Qilin (aka Agenda) ransomware gang, who have been leveraging CVE-2026-42271 and CVE-2026-48710 to deliver an XMRig miner via an ELF binary.
Several of the vulnerabilities, including CVE-2026-83548 and CVE-2026-83549 in SonicWall SMA 1000 Appliances, allow remote unauthenticated access and execution of arbitrary commands. CVE-2026-9586 in Sangoma Switchvox enables SQL injection attacks, while CVE-2026-82329 in JFrog Artifactory allows unauthenticated privilege escalation.
Microsoft has reported that threat actors are exploiting these flaws to establish reverse shells, deploy cryptocurrency miners, and steal sensitive data. Specifically, CVE-2026-49869, which allows for shell execution, container-environment exposure, and resource hijacking, was exploited to deploy a cryptocurrency miner and facilitate data harvesting. The attacks have exposed vulnerabilities in AI infrastructure, including LiteLLM, Flowise, LangChain, Langflow, ChromaDB, Ollama, Marimo, and MCP servers, leading to credential collection, durable access mechanisms, and resource monetization.
Per Microsoft, defenders should monitor AI workloads according to their control-plane role, not only as isolated applications. Pursuant to “Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk,” Federal Civilian Executive Branch (FCEB) agencies are recommended to apply patches for all the vulnerabilities, barring CVE-2026-48710 and CVE-2026-59822, by September 5, 2026. Agencies have time until September 16, 2026, to address the Starlette and LiteLLM flaws.
