ConciseSignal
Following

Critical Rejetto HFS vulnerability exploited in active attacks

Cybersecurity researchers report a critical security vulnerability (CVE-2026-61500) in Rejetto HTTP File Server is under active exploitation. The flaw allows attackers to predict the session-cookie signing key, enabling them to forge administrator sessions and gain full control over affected systems. Though a patch was issued in July 2026, widespread attacks began after a proof-of-concept exploit was released in late September. Threat actors have since targeted exposed servers, mainly in the United States.

Why it mattersSystems running vulnerable versions of Rejetto HFS can be fully compromised, putting sensitive files and server operations at risk. Organizations using the affected server should upgrade immediately to avoid remote code execution attacks.

Sources covering this

The Hacker NewsAttackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE8:09 AM →SecurityWeekHeadline onlyExploitation Hits Rejetto HFS Vulnerability Discovered by AI11:00 AM →BleepingComputerHeadline onlyRejetto HFS servers now actively scanned for critical RCE flaw8:20 PM →
Concise Signal DailyEnterprise AI, security & business tech.Weekdays, 7am Eastern · Sample issue

More in Cybersecurity