Vulnerabilities & Exploits

ScreenConnect Flaw and SILENTCONNECT Loader Enable Unauthorized Access

Elastic Security Labs observed an active SILENTCONNECT loader that delivers ScreenConnect via multistage VBScript and in-memory PowerShell, enabling hands‑on access to infected hosts.

4 sources · Mar 20

CVE-2026-3564

NVD KEV

CVSS 9 CRITICAL: a condition in ScreenConnect may allow an actor with access to server-level cryptographic material used for… EPSS 0.4% (28th percentile).

Timeline

Sources

Part of the PlainSec briefing for 2026-03-20

Every edition of this story: ScreenConnect Flaw and SILENTCONNECT Loader Enable Unauthorized Access

More from today