TL;DR

WatchTowr reports active exploitation of a CVSS 9.9 rated vulnerability impacting BeyondTrust's RS and PRA products, emphasizing the urgency to patch systems.

What happened

['BeyondTrust CVSS 9.9 rated vulnerability exploited in-the-wild', 'Exploitation observed across global sensors']

Why it matters for ops

['Critical security flaw poses significant risk to system integrity', 'Immediate action required to prevent data breaches and service disruptions']

Mitigation

  • Apply available security patches immediately
  • Disable unneeded services and protocols

Action items

  • Update systems with latest security patches
  • Enhance monitoring for suspicious activity

Detection IOCs

  • Abnormal network traffic patterns
  • Unusual log entries related to RS and PRA

Source link

https://thehackernews.com/2026/02/researchers-observe-in-wild.html