Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

Today’s signal The Hacker News recently reported Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware. Published context: September 11, 2026. Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unaut ...

September 11, 2026 · 3 min · David Gomez

Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed

Today’s signal The Hacker News recently reported Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed. Published context: September 9, 2026. The security researcher known as Chaotic Eclipse has dropped a proof-of-concept (PoC) for yet another zero-day in Microsoft Defender. The vulnerability, codenamed ShieldCrash, is assessed to be a patch bypass for CVE-2026-69414 (CVSS score: 7.8), also called ShieldBreak, which the researcher reported last month. “Microsoft has failed to properly patch Shield ...

September 10, 2026 · 3 min · David Gomez

Webinar: Learn How to Answer “Are We Exposed?” Faster After a New CVE

Today’s signal The Hacker News recently reported Webinar: Learn How to Answer “Are We Exposed?” Faster After a New CVE. Published context: September 9, 2026. A major vulnerability is disclosed. The alert lands immediately. Then comes the harder question: Are we actually exposed? For many security teams, answering that means jumping between vulnerability scanners, endpoint tools, cloud inventories, SBOMs, repositories, and application data to build enough context to act. As AI accelerates vulnerability discovery a ...

September 9, 2026 · 3 min · David Gomez

Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

Today’s signal The Hacker News recently reported Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell. Published context: September 8, 2026. Adobe on Monday released security patches to address a maximum-severity flaw impacting Adobe Commerce and Magento Open Source that has come under active exploitation in the wild. The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by Sansec, which discovered zero-day exploitation starting September 4, 2026. " ...

September 8, 2026 · 3 min · David Gomez

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

Today’s signal The Hacker News recently reported Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts. Published context: September 7, 2026. Cybersecurity researchers have disclosed details of worm-like activity that abuses ConnectWise ScreenConnect to distribute a malicious Visual Basic Script (VBScript) payload to newly connected systems. According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-de ...

September 7, 2026 · 3 min · David Gomez

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

Today’s signal The Hacker News recently reported Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials. Published context: September 5, 2026. JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. “Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their ...

September 6, 2026 · 3 min · David Gomez

Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root

Today’s signal The Hacker News recently reported Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root. Published context: September 3, 2026. Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR hardening release bundling 7 umbrella CVEs, 2 of which are rated 9.8, with no workaround for any IOS XR version. The Nexus vulnerability, tracked as ...

September 5, 2026 · 3 min · David Gomez

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Today’s signal The Hacker News recently reported Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day. Published context: September 4, 2026. Google on Thursday released security updates to patch 12 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2026-85046 (CVSS score: 8.8), has been described as a type confusion bug in V8, Chrome’s JavaScript and WebAssembly engine. “Type confusion in V8 in Google Chrome prior to ...

September 4, 2026 · 3 min · David Gomez

CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners

Today’s signal The Hacker News recently reported CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners. Published context: September 3, 2026. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in attackers’ crosshairs. The vulnerabilities are as follows - CVE-2026-83548 (CVSS score: 10.0) - A server-side request forgery vulnerability in SonicWall SMA 1000 Appliances that cou ...

September 3, 2026 · 3 min · David Gomez

Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain

Today’s signal The Hacker News recently reported Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain. Published context: September 2, 2026. SonicWall has released security updates to address two security flaws impacting its Secure Mobile Access (SMA) 1000 series VPN appliances that have been exploited in zero-day attacks. The vulnerabilities, discovered internally by SonicWall’s William Perry and Adam Babis, are listed below - CVE-2026-83548 (CVSS score: 10.0) - A pre-authentication SSRF vulnera ...

September 2, 2026 · 3 min · David Gomez

Amazon Redshift now supports AWS IAM Identity Center authentication with enhanced VPC routing

Today’s signal AWS What’s New recently reported Amazon Redshift now supports AWS IAM Identity Center authentication with enhanced VPC routing. Published context: August 31, 2026. Amazon Redshift now supports AWS IAM Identity Center authentication for provisioned clusters and serverless workgroups configured with enhanced VPC routing (EVR). You can access Amazon Redshift with single sign-on with your corporate credentials, and the traffic traverses Amazon Virtual Private Cloud (Amazon VPC) and stays on the AWS network. This is valuabl ...

September 1, 2026 · 3 min · David Gomez