Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS

A Critical Flaw in Cisco’s Firewalls Exposes Networks to Devastating Remote DoS Attacks

A critical vulnerability has been discovered in Cisco’s Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) firewalls, which have already been exploited in the wild. Attackers can take advantage of this flaw to launch a remote denial-of-service (DoS) attack on affected networks, disrupting business operations and compromising network security.

The vulnerability, identified as CVE-2023-2024, affects ASA and FTD devices running software versions prior to 9.14 for ASA and 6.7.1 for FTD. According to Cisco’s advisory, an attacker can exploit this flaw by sending a specially crafted packet to the device, which will then crash and become unresponsive. This crash can be repeated indefinitely, effectively rendering the network unavailable.

The impact of such an attack would be significant, as networks rely heavily on firewalls like ASA and FTD for security and access control. A DoS attack can cripple a business’s ability to operate online, resulting in lost revenue, damaged reputation, and compromised data. Moreover, if not addressed promptly, this vulnerability could also create opportunities for attackers to exploit other vulnerabilities or gain unauthorized access to the network.

Cisco ASA and FTD firewalls use a combination of signature-based detection and application-layer processing to inspect traffic and block malicious activity. However, in the case of CVE-2023-2024, an attacker can bypass these security measures by sending a packet that is specifically designed to evade detection. This highlights the importance of regular software updates and patching, as well as a robust incident response plan.

For organizations relying on Cisco’s firewalls, it is essential to take immediate action to mitigate this risk. The first step should be to verify the version of ASA or FTD software running on each device and apply the latest available patches or upgrades. This may involve coordinating with IT teams to schedule downtime for updates or using automated tools to streamline the process.

As a practical takeaway, we urge readers to prioritize patching their firewalls as soon as possible, regardless of whether they believe they are vulnerable. The consequences of a DoS attack can be severe, and it is always better to err on the side of caution when it comes to network security. Regularly monitoring for updates and staying informed about emerging threats will also help organizations stay ahead of potential attacks and minimize the risk of downtime or data breaches.


Source: The Hacker News — 2026-08-12