CISA warns of a new critical vulnerability: ransomware risk
CISA has added flaws in ConnectWise and Windows to its KEV catalog after detecting active attacks that could facilitate the deployment of ransomware.

Security alert: New threats in the KEV catalog
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning after adding two critical flaws to its Known Exploited Vulnerabilities (KEV) catalog. This action follows evidence that these flaws are being actively used in real-world attacks, increasing the risk of large-scale intrusions.
The risk in ConnectWise ScreenConnect
The primary focus is on the CVE-2024-1708 vulnerability, a path traversal flaw in ConnectWise ScreenConnect. With a CVSS score of 8.4, this breach allows attackers to bypass security controls and access unauthorized files, which frequently serves as a gateway for the deployment of ransomware and other malicious code.
"Exploiting known vulnerabilities is the preferred strategy for cybercrime groups to rapidly compromise corporate networks," cybersecurity experts note.
How to protect your infrastructure?
Modern cybersecurity requires constant vigilance. Just as we have seen other compromise attempts in the digital ecosystem, as detailed in LofyGang returns: The new hack that hides malware for Minecraft, attackers do not discriminate between gaming platforms or remote management tools.
To mitigate these risks, organizations should follow these guidelines:
- Immediate audit: Identify if your infrastructure uses vulnerable versions of ConnectWise.
- Patching: Prioritize updating affected systems according to the manufacturer's guidelines.
- Network monitoring: Implement detection solutions to identify any suspicious activity that matches path traversal patterns.
A race against time
Inclusion in the KEV catalog is not just a technical notification; it is a sign that the hack is being monetized by malicious actors. Ignoring these updates means leaving the door open to potential extortion. Keeping software updated and following the recommendations of security agencies is the most effective line of defense in a landscape where threats evolve day by day.
Conclusion
Cybersecurity is not a static task. The speed with which attackers take advantage of these flaws underscores the importance of proactive vulnerability management. Securing your systems today is the best guarantee against tomorrow's attacks.
Sources:
- The Hacker News: https://thehackernews.com/2026/04/cisa-adds-actively-exploited.html
Related articles
7 de septiembre de 2026
Cybersecurity: New ScreenConnect vulnerability facilitates attacks
Researchers have detected a four-stage infection chain that uses ScreenConnect to compromise systems through malicious scripts.
30 de agosto de 2026
Breach at Manchester Airports Group: The hack exposing 86 GB of data
The group FulcrumSec claims to have stolen 86 GB of data from Manchester Airports Group, revealing sensitive passenger and booking information.
23 de agosto de 2026
Hackers infect Android car systems: the new vulnerability
A supply chain attack is turning Android-based automotive multimedia systems into part of a botnet, putting driver security at risk.
16 de agosto de 2026
AmnesiaStealer: The new hack compromising macOS security
We analyze AmnesiaStealer, a macOS malware that enables remote browser control and puts user privacy at risk.
Loading comments...