Wazuh Server Vulnerability Hijacked by Mirai Variants

Red | Attack Report
Download PDF

In late March 2025, a critical Wazuh vulnerability CVE-2025-24016 has fallen into active exploitation, with cybercriminals leveraging it to unleash multiple Mirai botnet variants. This rapid weaponization highlights a stark reality of today’s threat landscape: the window between vulnerability disclosure and widespread exploitation is collapsing at an alarming pace. For defenders, it’s a sobering reminder that no vulnerability remains idle for long and adversaries are faster, sharper, and more opportunistic than ever.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox