October 27, 2025

Summary

ASM

The following risks have now been enabled by default for all ASM customers.

  • Exposed Watchguard Firewall
  • WDBRPC Service Exposed
  • Exposed atvremote Device
  • Exposed KVM

Rapid Response

The Censys Rapid Response team published information about and queries for the following issue.

New fingerprints

Added the following fingerprint.

TypeNameDescriptionQuery
riskVulnerable ISC Bind9 [CVE-2025-40778]This service is running a vulnerable version of ISC Bind9. An attacker may exploit a flaw in DNS response processing that allows cache poisoning via unsolicited answer records, enabling redirection of downstream clients.ASM query

An RSS feed for Censys release notes is available here.