FreePBX Servers Hacked in 0-Day Attack – Admins are Urged to Disable Internet Access

A critical zero-day exploit targeting exposed FreePBX 16 and 17 systems. Threat actors are abusing an unauthenticated privilege escalation vulnerability in the commercial Endpoint Manager module, allowing remote code execution (RCE) when the Administrator Control Panel is reachable from the public internet.  With active compromises detected since August 21, 2025, admins must act immediately to […]

The post FreePBX Servers Hacked in 0-Day Attack – Admins are Urged to Disable Internet Access appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: