Mirai Botnet aka Katana – Active IOCs
June 30, 2025Mirai Botnet aka Katana – Active IOCs
June 30, 2025Severity
High
Analysis Summary
CVE-2025-25012
URL redirection to an untrusted site ('Open Redirect') in Kibana can lead to sending a user to an arbitrary site and server-side request forgery via a specially crafted URL.
Impact
- Gain Access
Indicators of Compromise
CVE
CVE-2025-25012
Affected Vendors
- Elastic
Affected Products
- Elastic Kibana 7.0.0
- Elastic Kibana 8.0.0
- Elastic Kibana 8.18.0
- Elastic Kibana 9.0.0
Remediation
Refer to Elastic Kibana Security Advisory for patch, upgrade, or suggested workaround information.