Internet-Exposed KACE Appliances Suffer Administrative Takeover

Arctic Wolf observed activity consistent with exploitation of CVE-2025-32975 against internet-exposed Quest KACE SMA appliances that enabled administrative takeover.

Part of the PlainSec briefing for 2026-03-24

Sources