Hackers Actively Exploiting Gitea n-day RCE Vulnerability in the Wild to Hijack Instances

Hackers are actively exploiting a critical Gitea remote code execution vulnerability, tracked as CVE-2026-60004, to compromise internet-facing source-code management servers. Researchers found that a Chinese-speaking threat actor, named Red Heron, quickly turned public exploit code into an automated attack framework that stole source code, collected credentials, installed backdoors, and moved deeper into victim networks. The […]

This article has been indexed from Cyber Security News

Read the original article: