Urgent Alert: Hackers Weaponize Critical Craft CMS Vulnerability to Deploy Crypto-Mining Malware
A financially motivated threat actor called Mimo is exploiting CVE-2025-32432, a critical RCE vulnerability in Craft CMS, to deploy cryptojacking operations. After gaining access through the vulnerability, attackers install a web shell that downloads a malicious script, which removes compe...
