piyokango[verified]@piyokangoActive Exploitation
The tweet reports that four CVEs have been added to CISA’s Exploited Vulnerabilities catalog after confirmation of in‑the‑wild exploitation, with publicly available PoCs and detailed technical data.
Elusive[verified]@ElusivePrivacyActive Exploitation
CISA has listed CVE‑2024‑57726/57728, CVE‑2024‑7399, and CVE‑2025‑29635 as actively exploited, noting privilege escalation, path traversal, and command‑injection weaknesses used by ransomware and Mirai, with a federal patch deadline of May 8 2026.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CVE‑2024‑57726 was publicly disclosed, and according to the CISA KEV report, botnets DragonForce and Mirai are actively exploiting it in a live ransomware and botnet competition.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
The report confirms the first real‑world exploitation attempts for four CVEs, with CISA identifying them in its Known Exploited Vulnerabilities catalog.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA identified four CVEs—including SimpleHelp and Samsung MagicINFO—as actively exploited in the wild, providing CVSS scores, but no proof of concept, exploit code, or patch information is offered.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA has listed CVE-2024-57726 as a known exploited vulnerability requiring mandatory remediation for U.S. federal civilian agencies. The post provides a brief technical description but no PoC, exploit code, or patch details.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
The CVE‑2024‑57726 is actively exploited, as noted by its inclusion in CISA’s KEV catalog, allowing low‑privileged users in SimpleHelp to create over‑privileged API keys and gain server admin rights.
Inferlume[verified]@inferlume_hqGeneral
The text lists a series of CVEs without providing any additional context such as proof of concept, exploits, patches, or technical details.