nygazet.com logo

Hackers exploited Sitecore zero-day flaw to deploy backdoors

Hackers exploited Sitecore zero-day flaw to deploy backdoors
technology9/4/2025

Threat actors have been exploiting a zero-day vulnerability in legacy Sitecore deployments to deploy WeepSteel reconnaissance malware.

Threat actors have been exploiting a zero-day vulnerability in legacy Sitecore deployments to deploy WeepSteel reconnaissance malware. The flaw, tracked under CVE-2025-53690, is a ViewState deserialization vulnerability caused by the inclusion of a s... [2605 chars]