Sliver C2 Insecure Default Network Policy (CVE-2025-27093) | Hoang Nguyen

Article claims: The Sliver C2 framework has an insecure default network policy (CVE-2025-27093) in versions 1.5.43 and earlier, where the Wireguard netstack does not limit traffic between clients. This vulnerability allows compromised clients to potentially attack operators or access other implants through port forwarding.

Edward Kiledjian @ekiledjian