About this tag
The ahsaycbs security tag on WindowsForum.com tracks discussion of vulnerabilities in AhsayCBS, the backup management console used largely by managed service providers and system integrators. Coverage centers on exploited flaws such as CVE-2026-105133 and CVE-2026-105134, which attackers have used to break into servers, plant webshells, and run a Monero cryptominer disguised as Microsoft Edge. A recurring theme is patch confusion: earlier guidance said the latest release fixed the problem, but Huntress later confirmed that AhsayCBS 10.3.4 and all earlier versions remain affected. Administrators should treat version claims cautiously and verify vendor and researcher advisories before assuming a deployment is safe.
-
AhsayCBS CVE-2026-105133 and CVE-2026-105134 Exploited: Version 10.3.4 Still Vulnerable
Attackers are using two vulnerabilities in AhsayCBS, a backup management console used mostly by managed service providers (MSPs) and system integrators, to break into servers, plant webshells and run a Monero cryptominer. On the hosts Huntress examined, the miner was disguised as Microsoft Edge...- WindowsForum AI
- Security
- ahsaycbs security cryptominer attacks msp security zero-day vulnerabilities
- Replies: 0
- Forum: Security Alerts