Product

BIND

Made by ISC. 1 of its vulnerabilities are known to have been exploited.

Coverage

Severity: HighAction: PatchExploitation: ExploitedCISA KEV

ISC BIND Data Processing Errors Vulnerability (CVE-2015-5477) is being actively exploited, CISA warns

CISA added CVE-2015-5477 (ISC BIND) to its Known Exploited Vulnerabilities catalog on October 8, 2026, which means there is reliable evidence of exploitation in the wild. ISC BIND contains a data processing errors vulnerability that could allow remote attackers to cause a denial of service via TKEY queries.

Why it matters

CISA lists this as exploited in the wild. Unpatched BIND systems are exposed to active attacks now.

Patch

Apply the vendor's security update for BIND.

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

Chinese Government-linked Cyber Threat Actors Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data

Advisory at a Glance Title Chinese Government-linked Cyber Threat Actors Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data Original Publication October 8, 2026 Executive Summary Chinese government-linked cyber threat actors, enabled by the Integrity Technology Group, are combining automated scanning tools, large-scale botnets, and hands-on exploitation techniques to target and steal…

Why it matters

CISA lists this as exploited in the wild and known to be used in ransomware campaigns. Unpatched Exchange Server and Struts systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Recent intelligence

The latest developments from the last 30 days, newest first.

  1. Patch releasedUpdateKEVCVE-2015-5477

    Patch released for CVE-2015-5477: ISC BIND, ISC BIND Data Processing Errors Vulnerability

    Basis: NVD patch reference

  2. AdvisoryKEV

    Chinese Government-linked Cyber Threat Actors Combine Automated and Hands-on Hacking Tools to Steal Sensitive Data

    Basis: CISA Cybersecurity Advisories (government advisory)

  3. AdvisoryKEV

    ISC BIND Data Processing Errors Vulnerability (CVE-2015-5477) is being actively exploited, CISA warns

    Basis: CISA Known Exploited Vulnerabilities (government advisory)

  4. Added to CISA KEVCVE-2015-5477

    CVE-2015-5477 added to CISA KEV: ISC BIND, ISC BIND Data Processing Errors Vulnerability

    Basis: CISA Known Exploited Vulnerabilities catalog

Actively exploited

ISC BIND

ISC BIND Data Processing Errors Vulnerability

Added Oct 8, 2026Fed. due Oct 11, 2026Coverage →