Hackers Abuse Triofox Antivirus Feature to Deploy Remote Access Tools
7 Articles
7 Articles
Okay, now I need to summarize this article for the user, keeping it under 100 words and without a specific opening. First, I need to read the entire article and grasp the main information. The article discusses how hackers exploited a Triofox vulnerability, CVE-2025-12480, to upload malicious scripts through the platform's antivirus function, bypassing authentication and installing remote access tools. Researchers at Mandiant discovered this at…
Mandiant Warns of Active Exploitation of Critical Triofox Flaw Allowing Remote Access
Mandiant has issued a critical warning regarding the active exploitation of CVE-2025-12480, a severe improper access control vulnerability within Gladinet’s Triofox file-sharing and remote access platform. This flaw allo…
Hackers Exploiting Triofox Flaw To Install Remote Access Tools Via Antivirus Feature - Cybernoz - Cybersecurity News
Nov 10, 2025Ravie LakshmananVulnerability / Incident Response Google’s Mandiant Threat Defense on Monday said it discovered n-day exploitation of a now-patched security flaw in Gladinet’s Triofox file-sharing and remote access platform. The critical vulnerability, tracked as CVE-2025-12480 (CVSS score: 9.1), allows an attacker to bypass authentication and access the configuration pages, resulting in the upload and execution of arbitrary paylo…
Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus Feature
Google's Mandiant Threat Defense on Monday said it discovered n-day exploitation of a now-patched security flaw in Gladinet's Triofox file-sharing and remote access platform. The critical vulnerability, tracked as CVE-2025-12480 (CVSS score: 9.1), allows an attacker to bypass authentication and access the configuration pages, resulting in the upload and execution of arbitrary payloads. The
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium



