https://www.theregister.com/2025/05/22/chinese_crew_us_city_utilities/
A suspected Chinese crew has been exploiting a now-patched remote code execution (RCE) flaw in Trimble Cityworks to break into US local government networks and target utility management systems, according to Cisco’s Talos threat intelligence group. … Less than a week later, the US Cybersecurity and Infrastructure Security Agency (CISA) said the flaw was under active exploitation - apparently there are still enough IIS instances in the wild to make it worth exploiting, even though Microsoft hasn’t released a major new version since 2018. …
Regards