Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus Feature
Tuesday, 11 November 2025
by Ayman Hamam
Google’s Mandiant Threat Defense on Monday said it discovered n-day exploitation of a now-patched security flaw in Gladinet’s Triofox file-sharing and remote access platform. The critical vulnerability, tracked as CVE-2025-12480 (CVSS score: 9.1), allows an attacker to bypass authentication and access the configuration pages, resulting in the upload and execution of arbitrary payloads. The tech giant said it observed
- Published in News
Tagged under:
Antivirus Bypass, AnyDesk, ASC, Code Execution, CVE-2025-12480, Cyber Attack, Cyber Defense, Cyber Security, Digital Forensics, Exploit Alert, Gladinet, Google Mandiant, InfoSec, Malware Analysis, Mandiant, Patch Management, Patch Now, Plink, privilege escalation, PuTTY, RDP Attack, Remote Access, Security Update, SSH Tunnel, Threat Hunting, Threat Intelligence, Triofox, UNC6485, vulnerability management, Zoho Assist, Zoho UEMS


