CISA adds seven exploited flaws to KEV catalog as attackers target AI infrastructure with reverse shells and miners
CISA added seven actively exploited vulnerabilities to the KEV catalog, including flaws in LiteLLM, Kestra, SonicWall SMA 1000, JFrog Artifactory, and Sangoma Switchvox. Microsoft and Wiz report that AI infrastructure gateways are now active targets for reverse shells, crypto miners, and API key theft.