X[verified]@SansLimit3Active Exploitation
The post reports that CVE‑2025‑31324 in SAP NetWeaver is being actively exploited by China‑linked APTs, with specific exploitation scripts and tools such as fscan and Neo‑reGeorg observed scanning Indian critical infrastructure.
Team Cymru Research[verified]@teamcymru_S2Active Exploitation
The tweet enumerates the 25 CVEs with the highest observed exploitation attempts, indicating active exploitation, but it lacks technical details or mitigation information.
yousukezan[verified]@yousukezanGeneral
The author observes ongoing scanning activity targeting SAP NetWeaver CVE‑2025‑31324 by comparing ET Open rules with honeypot logs, but provides no proof of exploitation, PoC, or mitigation details.
Group-IB Global[verified]@GroupIBActive Exploitation
Scattered Spider broke into JLR’s ERP via two SAP NetWeaver zero-days, shutting down plant lines across four countries and incurring $250M in losses, illustrating active exploitation of SAP vulnerabilities in European manufacturing.
Misbar | مسبار[verified]@MisbarSecPatch
Researchers expose a long‑hidden integer underflow flaw in strongSwan’s EAP‑TTLS module that can crash VPN services; they urge users to update immediately to prevent potential denial‑of‑service attacks.
White Rabbitx 🏴☠️[verified]@TheRabbitPyDisclosure
The text announces a high‑severity vulnerability (CVSS 10.0) in SAP NetWeaver that allows unauthenticated remote code execution, but does not provide exploit details or remediation advice.
Silent Vector[verified]@gh0st_V3ctbrvActive Exploitation
The post notes several CVEs being leveraged, including an actively exploited Check Point VPN flaw and a zero-day used prior to disclosure, but no PoC or patch information is supplied.
Cyber News Live[verified]@cybernewsliveActive Exploitation
The report indicates that a small subset of vulnerabilities, including CVE‑2025‑55182, CVE‑2025‑53770, and CVE‑2025‑31324, are being actively exploited by threat actors before patches are released.