TI Mindmap HUB
Threat Intelligence Report

UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager

๐Ÿ“… December 18, 2025 ๐Ÿ“ฐ blog.talosintelligence.com ๐Ÿ” 0 CVE(s) referenced

A Chinese-nexus APT group, UAT-9686, is actively exploiting non-standard configurations in Cisco Secure Email Gateway and Web Manager appliances to deploy persistent backdoors and tunneling tools for covert remote access and log tampering.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle