Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw
Jun 15, 2026
Vulnerability Critical Cisco has released security updates to address a vulnerability in the Catalyst SD-WAN Manager, tracked as CVE-2026-20262, that was exploited in attacks to escalate to root privileges. [...]
Weekly Threat Roundup: 2026-06-08 to 2026-06-14
Jun 14, 2026
roundup
Trending
Critical Cybersecurity roundup for 2026-06-08 to 2026-06-14. 4 CVE advisories, 3 breach reports, 5 threat news stories.
CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation
Jun 10, 2026
Vulnerability Critical The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitati
Weekly Threat Roundup: 2026-05-11 to 2026-05-17
May 17, 2026
roundup
Trending
Critical Cybersecurity roundup for 2026-05-11 to 2026-05-17. 3 CVE advisories, 3 breach reports, 1 threat news stories.
Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin Access
May 14, 2026
Vulnerability Critical Cisco is warning that a critical Catalyst SD-WAN Controller authentication bypass flaw, tracked as CVE-2026-20182, was actively exploited in zero-day attacks that allowed attackers to gain administrat
Weekly Threat Roundup: 2026-04-27 to 2026-05-03
May 3, 2026
roundup
Trending
Critical Cybersecurity roundup for 2026-04-27 to 2026-05-03. 10 CVE advisories, 5 breach reports, 5 threat news stories.
TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)
Apr 27, 2026
Vulnerability Critical TeamPCP supply chain campaign resumed after a 26-day pause with three concurrent compromises (Checkmarx KICS, Bitwarden CLI, xinference PyPI). A new self-propagating npm worm, CanisterSprawl, has also been identified.
Weekly Threat Roundup: 2026-04-20 to 2026-04-26
Apr 26, 2026
roundup
Trending
Critical Cybersecurity roundup for 2026-04-20 to 2026-04-26. 10 CVE advisories, 2 breach reports, 5 threat news stories.
FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches
Apr 24, 2026
Vulnerability Medium Cybersecurity agencies in the U.S. and U.K. are warning about a custom malware called Firestarter persisting on Cisco Firepower and Secure Firewall devices running Adaptive Security Appliance (ASA) or
CISA Warns of FIRESTARTER Malware Targeting Cisco ASA including Firepower and Secure Firewall Products
Apr 23, 2026
Vulnerability Medium
CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines
Apr 21, 2026
Vulnerability Critical The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added eight new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including three flaws impacting Cisco C
CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco Zero-Day Hit in Ransomware Attacks
Mar 19, 2026
Vulnerability Critical A critical Microsoft SharePoint vulnerability patched in January is now being exploited in attacks, the Cybersecurity and Infrastructure Security Agency (CISA) warned. [...]
Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root Access
Mar 19, 2026
Vulnerability Medium A new Android malware called Perseus is checking user-curated notes to steal sensitive information, like passwords, recovery phrases, or financial data. [...]
DarkSword iOS Exploit Kit Uses 6 Flaws, 3 Zero-Days for Full Device Takeover
Mar 18, 2026
Vulnerability Medium The Interlock ransomware gang has been exploiting a maximum severity remote code execution (RCE) vulnerability in Cisco's Secure Firewall Management Center (FMC) software in zero-day attacks since lat
China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom Attacks
High A China-linked advanced persistent threat actor tracked as UAT-9244 has been targeting telecommunication service providers in South America since 2024, compromising Windows, Linux, and network-edge de