CVE-2025-26633: How Water Gamayun Weaponizes MUIPath using MSC EvilTwinTrend Research identified Russian threat actor Water Gamayun exploiting CVE-2025-26633, a zero-day vulnerability in the Microsoft Management Console that attackers exploit to execute malicious code and exfiltrate data.
Source:
CVE-2025-26633: How Water Gamayun Weaponizes MUIPath using MSC EvilTwin