
CVE-2026-25791 Sliver is a command and control framework that uses a custom Wireguard netstack. Prior to 1.7.0, the DNS C2 listener accepts unauthenticated TOTP bootstrap messages a… https://www.cve.org/CVERecord?id=CVE-2026-25791
Post summary
The CVE details a flaw in Sliver’s DNS C2 listener that accepts unauthenticated TOTP bootstrap messages before version 1.7.0, but no exploitation, patch, or PoC is provided.


