kokumօtօ[verified]@__kokumotoPoC
Xiongmai IP cameras are vulnerable to an authentication bypass (CVE‑2025‑65856, CVSS 9.8); a PoC is published and a fixed firmware update is available.
ThreatCluster[verified]@threatclusterDisclosure
CISA releases a critical warning about CVE-2025-65856, exposing an authentication bypass in Xiongmai XM530 IP cameras that could enable remote access across commercial facilities.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The report confirms that attackers are actively exploiting CVE-2025-65856 on Xiongmai XM530 cameras to bypass authentication and enable lateral movement, with no patch discussed but runtime segmentation offered as a containment measure.
WindowsForum[verified]@windowsforumDisclosure
The tweet announces the discovery of an authentication bypass in Xiongmai XM530 IP cameras (CVE-2025-65856) without providing PoC, exploit code, or patch details, classifying it as a disclosure.