DiscoverSANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password;
SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password;

SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password;

Update: 2025-11-11
Share

Description



It isn t always defaults: Scans for 3CX Usernames

Our honeypots detected scans for usernames that may be related to 3CX business phone systems

https://isc.sans.edu/diary/It%20isn%27t%20always%20defaults%3A%20Scans%20for%203CX%20usernames/32464

Watchguard Default Password Controversy

A CVE number was assigned to a default password commonly used in Watchguard products. This was a documented username and password that was recently removed in a firmware upgrade.

https://github.com/cyberbyte000/CVE-2025-59396/blob/main/CVE-2025-59396.txt

https://nvd.nist.gov/vuln/detail/CVE-2025-59396

JavaScript expr-eval Vulnerability

The JavaScript expr-eval library was vulnerable to a code execution issue.

https://www.kb.cert.org/vuls/id/263614
Comments 
loading
In Channel
loading
00:00
00:00
1.0x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password;

SANS Stormcast Tuesday, November 11th, 2025: 3CX Related Scans; Watchguard Default Password;

Dr. Johannes B. Ullrich