Threat and Vulnerabilities Report - August 2025

September 2, 2025

Summary

The cyber threat landscape continued to evolve rapidly, with critical flaws surfacing across widely used enterprise and consumer technologies. CISA's Known Exploited Vulnerabilities (KEV) catalog remained a key indicator of active exploitation trends, highlighting where attackers are striking most.  

A total of 15 vulnerabilities entered the KEV catalog this month, with D-Link and Citrix each accounting for three and N-able N-Central and Microsoft accounting for two each, reflecting how attackers continue to target technologies across networking, IT management, and enterprise ecosystems.

Ransomware activity spiked this month, with Qilin, Akira, and Safepay leading the charge. The education, finance, and manufacturing sectors were hit the hardest, with attackers leveraging known unpatched vulnerabilities to break into critical systems.  

Subscribe to our Newsletter