Vulnerabilities & Exploits · Zero-Day Exploit
Zero-Day Exploits Hit Enterprise Devices in 2025 Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025. About 48% targeted enterprise technologies such as firewalls, VPNs and virtualization platforms. Attribution shows state-backed groups focused on edge and security appliances while commercial surveillance vendors targeted mobile devices and browsers.
7 sources · Mar 6
CVEs in this update
19 CVEs
Across Connect Secure, Policy Secure, Neurons for ZTA gateways, and related packages.
4 critical · 13 high · 2 medium · 0 low
19 in CISA KEV · 17 with EPSS above 1%
1 with functional or packaged public exploit code
Highest severity: CVE-2025-43300 · 10.0 CRITICAL
Highest EPSS: CVE-2025-0282 · 100%
Showing the top 10 by KEV, EPSS, and severity.
Timeline Mar 6 Reported by Infosecurity Magazine Mar 5 Reported by TechCrunch Security Jan 2 CISA federal deadline for CVE-2025-14174 passedDec 12 CVE-2025-14174 added to CISA KEVDec 1 CISA federal deadline for CVE-2025-21042 passedNov 10 CISA federal deadline for CVE-2025-61884 passedOct 27 CISA federal deadline for CVE-2025-61882 passedOct 20 CVE-2025-61884 added to CISA KEVOct 6 CVE-2025-61882 added to CISA KEVSep 11 CISA federal deadline for CVE-2025-43300 passedSep 2 CISA federal deadline for CVE-2025-8088 passedAug 21 CVE-2025-43300 added to CISA KEVAug 12 CVE-2025-8088 added to CISA KEVJul 22 CVE-2025-6558 added to CISA KEVApr 17 CISA federal deadline for CVE-2025-2783 passedMar 27 CVE-2025-2783 added to CISA KEVFeb 14 CISA federal deadline for CVE-2025-23006 passedJan 24 CVE-2025-23006 added to CISA KEVJan 15 CISA federal deadline for CVE-2025-0282 passedJan 8 CVE-2025-0282 added to CISA KEVSources Mar 6 Infosecurity Magazine
Zero‑Day Attacks on Enterprise Software Reach Record High
Almost a quarter of the zero days detected by Google in 2025 targeted security and networking appliances
original Mar 6 Cybersecurity Dive
Nearly half of exploited zero-day flaws target enterprise-grade technology
A report by Google Threat Intelligence Group warns that AI will be used to speed and scale attacks in 2026.
original Mar 5 TechCrunch Security
Google says half of all zero-days it tracked in 2025 targeted buggy enterprise tech | TechCrunch
Enterprise software was a major focus of zero-day activity during 2025, with security and networking devices, like firewalls, VPNs, and virtualization platforms among the most targeted by malicious hackers.
original Vendor digest: Microsoft
Vendor digest: Cisco
Vendor digest: Fortinet
Vendor digest: Ivanti
Vendor digest: VMware
Part of the PlainSec briefing for 2026-03-06
Every edition of this story: Zero-Day Exploits Hit Enterprise Devices in 2025
More from today
Vulnerabilities & Exploits · Zero-Day Exploit
Zero-Day Exploits Hit Enterprise Devices in 2025 Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025. About 48% targeted enterprise technologies such as firewalls, VPNs and virtualization platforms. Attribution shows state-backed groups focused on edge and security appliances while commercial surveillance vendors targeted mobile devices and browsers.
7 sources · Mar 6
CVEs in this update
19 CVEs
Across Connect Secure, Policy Secure, Neurons for ZTA gateways, and related packages.
4 critical · 13 high · 2 medium · 0 low
19 in CISA KEV · 17 with EPSS above 1%
1 with functional or packaged public exploit code
Highest severity: CVE-2025-43300 · 10.0 CRITICAL
Highest EPSS: CVE-2025-0282 · 100%
Showing the top 10 by KEV, EPSS, and severity.
Timeline Mar 6 Reported by Infosecurity Magazine Mar 5 Reported by TechCrunch Security Jan 2 CISA federal deadline for CVE-2025-14174 passedDec 12 CVE-2025-14174 added to CISA KEVDec 1 CISA federal deadline for CVE-2025-21042 passedNov 10 CISA federal deadline for CVE-2025-61884 passedOct 27 CISA federal deadline for CVE-2025-61882 passedOct 20 CVE-2025-61884 added to CISA KEVOct 6 CVE-2025-61882 added to CISA KEVSep 11 CISA federal deadline for CVE-2025-43300 passedSep 2 CISA federal deadline for CVE-2025-8088 passedAug 21 CVE-2025-43300 added to CISA KEVAug 12 CVE-2025-8088 added to CISA KEVJul 22 CVE-2025-6558 added to CISA KEVApr 17 CISA federal deadline for CVE-2025-2783 passedMar 27 CVE-2025-2783 added to CISA KEVFeb 14 CISA federal deadline for CVE-2025-23006 passedJan 24 CVE-2025-23006 added to CISA KEVJan 15 CISA federal deadline for CVE-2025-0282 passedJan 8 CVE-2025-0282 added to CISA KEVSources Mar 6 Infosecurity Magazine
Zero‑Day Attacks on Enterprise Software Reach Record High
Almost a quarter of the zero days detected by Google in 2025 targeted security and networking appliances
original Mar 6 Cybersecurity Dive
Nearly half of exploited zero-day flaws target enterprise-grade technology
A report by Google Threat Intelligence Group warns that AI will be used to speed and scale attacks in 2026.
original Mar 5 TechCrunch Security
Google says half of all zero-days it tracked in 2025 targeted buggy enterprise tech | TechCrunch
Enterprise software was a major focus of zero-day activity during 2025, with security and networking devices, like firewalls, VPNs, and virtualization platforms among the most targeted by malicious hackers.
original Vendor digest: Microsoft
Vendor digest: Cisco
Vendor digest: Fortinet
Vendor digest: Ivanti
Vendor digest: VMware
Part of the PlainSec briefing for 2026-03-06
Every edition of this story: Zero-Day Exploits Hit Enterprise Devices in 2025
More from today