CISA added several new Industrial Control Systems advisories to its CSAF repository, publishing ICSA-26-069-01, ICSA-26-069-02, and ICSA-26-069-04 as machine-readable OT security notices. The advisories were released together through CISA's GitHub-backed CSAF feed, indicating a coordinated batch of ICS vulnerability disclosures affecting operational technology environments.
At the same time, public exploit research for CVE-2025-37947 in Linux KSMBD was available on GitHub through a Doyensec repository that included a bpf-tracer.sh script, signaling active technical analysis and potential proof-of-concept development around the flaw. Together, the disclosures highlight concurrent exposure across OT products and Linux SMB server components, giving defenders fresh advisories to review and newly published offensive research to monitor.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
CISA published multiple CSAF OT advisory files, including ICSA-26-069-01, ICSA-26-069-02, and ICSA-26-069-04, in its CSAF repository. The references indicate coordinated advisory publication for industrial control systems.
A GitHub repository related to CVE-2025-37947 in KSMBD, including a bpf-tracer.sh file, was published by Doyensec. This indicates public release of technical material for the vulnerability.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
4 references tracked. Mallory keeps watching after this page renders.
github.com
Open sourcegithub.com
Open sourcegithub.com
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.