24h | 7d | 30d

Overview

  • Cisco
  • Cisco Catalyst SD-WAN Manager

30 Sep 2026
Published
01 Oct 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
1.10%

Description

A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request to bypass an authentication rule that is intended to restrict access to a specific API endpoint. An attacker could exploit this vulnerability by sending a crafted HTTP request to the API of the affected system. A successful exploit could allow the attacker to bypass authentication and gain access to the API as the admin user.

Statistics

  • 17 Posts
  • 2 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

This the one I been waiting for..
shout out to Xi and da boiz

watchtowr.com/intelligence/cis

  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Catalyst SD-WAN Manager flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Cisco Catalyst SD-WAN Manager flaw, tracked as CVE-2026-76504 (CVSS score of 9.8), to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability resides in Cisco Catalyst SD-WAN Manager’s […]
U.S. CISA adds Cisco Catalyst SD-WAN Manager flaw to its Known Exploited Vulnerabilities catalog
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)

Threat Advisory: CVE-2026-76504 Affected Vendor/Product: Cisco - Catalyst SD-WAN Manager Vulnerability Type (CWE): N/A Operational Threat Level:...

thecybermind.co/2026/10/01/cve

  • 0
  • 0
  • 1
  • 10h ago
Profile picture fallback

Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)

CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...

thecybermind.co/2026/10/01/cve

  • 0
  • 0
  • 1
  • 9h ago
Profile picture fallback

📰 Cisco Patches Actively Exploited SD-WAN Auth Bypass Zero-Day

Cisco patches critical auth bypass zero-day (CVE-2026-76504) in Catalyst SD-WAN Manager. CVSS 9.8 flaw actively exploited. Unauthenticated attackers can gain admin access. CISA added to KEV. Patch immediately! #Cisco #ZeroDay #SDWAN #CVE202676504

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
CVE-2026-76504 enables remote unauthenticated attackers to bypass authentication and gain admin access in Catalyst SD-WAN Manager via improper URI encoding.
  • 0
  • 1
  • 1
  • 12h ago
Profile picture fallback
Cisco released urgent fixes for CVE-2026-76504, a critical 9.8 auth bypass in Catalyst SD-WAN Manager already exploited in the wild. Malformed HTTP requests can grant admin access. #Cisco #CatalystSDWAN #CVE202676504
  • 0
  • 1
  • 0
  • 9h ago
Profile picture fallback
Cisco SD-WAN Manager CVE-2026-76504: Critical Auth Bypass Exploited in the Wild(Cisco SD-WAN Managerの重大な認証バイパス脆弱性CVE-2026-76504が実悪用) #SecurityOnline (Sep 30) securityonline.info/cisco-sd-wan...
  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback
CISAが既知の悪用された脆弱性を1件カタログに追加 #CISA (Sep 30) CVE-2026-76504 Cisco Catalyst SD-WAN Managerの16進数エンコーディングの脆弱性 www.cisa.gov/news-events/...
  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback
~Cisa~ CISA reports active exploitation of a Cisco Catalyst SD-WAN Manager hex encoding vulnerability; prioritize remediation. - IOCs: CVE-2026-76504 - #CVE202676504 #Cisco #ThreatIntel
  • 0
  • 0
  • 0
  • 17h ago
Profile picture fallback
Cisco Catalyst SD-WAN Managerの認証回避 脆弱性:CVE-2026-76504がサイバー攻撃に悪用、CVSS 9.8・CISA KEVに追加 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #セキュリティ #セキュリティニュース
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
New Cisco SD-WAN zero-day exploited in-the-wild (CVE-2026-76504) 📖 Read more: www.helpnetsecurity.com/2026/10/01/n... #cybersecurity #cybersecuritynews #0day #exploit @cisco.com
  • 0
  • 0
  • 0
  • 10h ago
Profile picture fallback
Cisco says CVE-2026-76504 is being exploited in zero-day attacks against Cisco Catalyst SD-WAN Manager, enabling API auth bypass and possible admin access. Fixes and IoCs are available. #Cisco #CVE202676504 #CISA
  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback
~Cybergcca~ Five advisories urge updates; Cisco CVE-2026-76504 is actively exploited. - IOCs: CVE-2026-76504, CVE-2026-86134 - #CVE-2026-76504 #CyberSecurity #ThreatIntel
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • Citrix NetScaler
  • ADC

27 Sep 2026
Published
29 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
1.06%

Description

Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.

Statistics

  • 8 Posts
  • 37 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

Great IOCs on the follow up spray and pray activity on #PitScaler so far.

For context this activity definitely is not related to the inital threat actor activity in early September. This is new stuff.

github.com/rtkwlf/wolf-tools/t

  • 12
  • 21
  • 0
  • 20h ago
Profile picture fallback

oh wow that grep|sed|awk pipeline...

I keep saying this:
Parsing strings all over the place is a funny idea that #Unix had, but inherently prone to error and, frankly, horribly insecure.

labs.watchtowr.com/oh-look-the

  • 0
  • 3
  • 0
  • 3h ago
Profile picture fallback

Attackers exploit Citrix NetScaler zero-day CVE-2026-88772 for root access, then hide WHIPSHOT web shells and a SLAPSHOT tunneler. Patch now.

securityonline.info/citrix-net

  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

📰 Citrix Patches Two Critical NetScaler Zero-Days Under Active Attack

Critical Alert: Two Citrix NetScaler zero-days (CVE-2026-88771, CVE-2026-88772) are under active global attack. Flaws allow unauthenticated RCE. CISA KEV listed. Patch and hunt for compromise now! #Citrix #NetScaler #CyberSecurity #CVE

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
Citrix NetScaler Active Exploitation via CVE-2026-88771
  • 0
  • 1
  • 1
  • 19h ago
Profile picture fallback
Threat actors exploit CVE-2026-88771 in Citrix NetScaler ADC/Gateway to execute commands, deploy web shells, and steal configuration data.
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
~Spiderlabs~ Exploitation progressed from command injection to payloads, reverse shells, config theft, privileged access, and web shells. - IOCs: 64[.]94[.]85[.]67, 45[.]141[.]21[.]130, 23[.]27[.]143[.]20 - #CVE-2026-88771 #NetScaler #ThreatIntel
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • Zimbra
  • Collaboration

13 Aug 2026
Published
24 Aug 2026
Updated

CVSS v3.1
HIGH (8.9)
EPSS
11.74%

Description

A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.

Statistics

  • 8 Posts
  • 5 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

Un domaine eu\.org cité par Microsoft sur l'attaque Zimbra. Domaine suspendu. Sauf erreur de ma part, Microsoft n'a jamais contacté eu\.org. Je n'en ai eu connaissance que ce matin par @dascritch qui m'a envoyé le lien @NextInpact

microsoft.com/en-us/security/b

next.ink/259249/les-serveurs-e

  • 2
  • 2
  • 0
  • 9h ago
Profile picture fallback

🚨 Attackers exploited a Zimbra flaw to plant web shells and harvest authentication secrets.

CVE-2026-73570 can be triggered by a crafted SMTP request when SNMP notifications are enabled and zimbra-snmp is installed.

Read: thehackernews.com/2026/09/atta

  • 0
  • 1
  • 0
  • 21h ago
Profile picture fallback
  • 0
  • 0
  • 1
  • 14h ago

Bluesky

Profile picture fallback
CVE-2026-73570 enables unauthenticated remote command execution in Zimbra, allowing attackers to deploy web shells, steal mailbox data, and exfiltrate authentication credentials.
  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570 #CVE202673570 #MicrosoftSecurity https://go.rodtrent.com/go/vkxemvy
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
Microsoft: attackers are exploiting a critical Zimbra flaw (CVE-2026-73570) to steal email backups and credentials. One unauthenticated email = remote OS command injection. 274 servers already compromised. Patched July, disclosed 3 weeks later. #CyberSecurity #Zimbra
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
@microsoft.com Unauthenticated command injection enabled webshells, root access, persistence and mailbox theft; patch to 10.1.20+. - IOCs: 45[.]32[.]30[.]235, transzimbra[.]linkpc[.]net, psk1zim[.]abrdns[.]com - #CVE202673570 #ThreatIntel #Zimbra
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • Apple
  • iOS and iPadOS

28 Sep 2026
Published
01 Oct 2026
Updated

CVSS
Pending
EPSS
1.24%

Description

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.

Statistics

  • 6 Posts
  • 5 Interactions

Last activity: 9 hours ago

Fediverse

Profile picture fallback

Geopolitical: Iran warned UAE following Netanyahu's visit (Sept 30) amidst regional tensions, while Russia conducted a drone strike on Ukraine's National Academy of Sciences (Sept 29).

Technology: OpenAI launched "dots" agents and GPT-6.1 Sol (Sept 29), despite shelving a prior AI model (Astra) due to safety concerns. SpaceX's Starship successfully completed its first orbital flight (Sept 28-29).

Cybersecurity: Urgent advisories were issued for actively exploited Citrix NetScaler zero-days (Sept 30), mandating federal agency patching. Apple also patched a CoreGraphics zero-day (CVE-2026-86950) used in targeted attacks (Sept 29).

#AnonNews_irc #Cybersecurity #News

  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
Apple patched a CoreGraphics zero-day that may have been exploited in targeted attacks. A public PoC for the flaw is now available. Apple patched a zero-day vulnerability, tracked as CVE-2026-86950, in CoreGraphics that attackers may have exploited to target specific individuals. The flaw is an out-of-bounds write that can lead to arbitrary code execution when […]
Public PoC Released for Apple CoreGraphics Zero-Day CVE-2026-86950
  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback

#Apple released a #security update for #iOS 26, #iPadOS 26, and #macOS 26 to fix a #vulnerability in the #graphicsengine that could be exploited for sophisticated attacks. The bug, CVE-2026-86950, was discovered by Meta and could potentially allow hackers to steal personal data. A separate zero-click bug, CVE-2026-86869, was also fixed, preventing silent data theft via malicious iMessages. techcrunch.com/2026/09/29/stil

  • 1
  • 1
  • 1
  • 23h ago

Bluesky

Profile picture fallback
Apple CoreGraphics Zero-Day Gets First Public Exploit Demo Researchers published the first public proof-of-concept for Apple's CVE-2026-86950, a CoreGraphics flaw triggered by a malicious PDF.
  • 1
  • 1
  • 0
  • 14h ago
Profile picture fallback
Public PoC for CVE-2026-86950 triggers a controlled out-of-bounds write in CoreGraphics; code execution is not demonstrated.
  • 0
  • 1
  • 0
  • 10h ago

Overview

  • Citrix NetScaler
  • ADC

27 Sep 2026
Published
28 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
1.30%

Description

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service

Statistics

  • 8 Posts

Last activity: 3 hours ago

Fediverse

Profile picture fallback

CVE-2026-88772, a Citrix NetScaler DTLS memory overflow, is exploited in the wild. A watchTowr PoC and full details are now public. Patch NetScaler now.

securityonline.info/citrix-net

  • 0
  • 0
  • 0
  • 20h ago
Profile picture fallback

Attackers exploit Citrix NetScaler zero-day CVE-2026-88772 for root access, then hide WHIPSHOT web shells and a SLAPSHOT tunneler. Patch now.

securityonline.info/citrix-net

  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

📰 Citrix Patches Two Critical NetScaler Zero-Days Under Active Attack

Critical Alert: Two Citrix NetScaler zero-days (CVE-2026-88771, CVE-2026-88772) are under active global attack. Flaws allow unauthenticated RCE. CISA KEV listed. Patch and hunt for compromise now! #Citrix #NetScaler #CyberSecurity #CVE

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
CVE-2026-88772: Citrix NetScaler Zero-Day Exploited, PoC Details Emerge(Citrix NetScalerゼロデイCVE-2026-88772が実悪用、PoC詳細も公開) #SecurityOnline (Sep 30) securityonline.info/citrix-netsc...
  • 0
  • 0
  • 1
  • 18h ago
Profile picture fallback
Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772)(国家支援型とみられる攻撃者、NetScalerゼロデイを9月初旬から悪用) #HelpNetSecurity (Sep 30) www.helpnetsecurity.com/2026/09/30/c...
  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback
Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution(Citrix NetScalerのCVE-2026-88772、認証前からシェルコード実行に至る攻撃手法が判明) #TheHackerNews (Sep 30) thehackernews.com/2026/09/citr...
  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback
📢 Citrix NetScaler : débordement mémoire DTLS préauthentification CVE-2026-88772 exploité en zero-day Cet article constitue la deuxième partie d'une série d'analyses portant sur un bulletin Citrix (CTX697096) corrigeant huit… 🟢 vérification factuelle haute #CitrixNetScaler #DTLS #Cyberveille
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • Sharp Corporation
  • Multiple Multifunction Printers

01 Oct 2026
Published
01 Oct 2026
Updated

CVSS v4.0
HIGH (8.7)
EPSS
Pending

KEV

Description

Sharp (and Toshiba Tec rebranded) multifunction printers contain an unauthenticated local file inclusion vulnerability that allows remote attackers to read arbitrary files by manipulating the path parameter in the installed_emanual_down.html endpoint. Attackers can supply directory traversal sequences such as path=/manual/../../../<path> to access files outside the intended manual directory, including /etc/passwd, coredump files containing credentials, and system configuration files. Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.

Statistics

  • 1 Post
  • 46 Interactions

Last activity: 6 hours ago

Fediverse

Profile picture fallback

Fuck this bullshit. This 2024 CVE was just published today. Which, fine, whatever. It happens. Except it specifically says it was observed EITW in July 2024.

cve.org/CVERecord?id=CVE-2024-

Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.

Witholding a CVE for something known to be EITW for over two years is fucking bullshit. Especially when the PoC was published in June 2024:

pierrekim.github.io/blog/2024-

But at least there's a Nuclei template:

github.com/projectdiscovery/nu

  • 21
  • 25
  • 0
  • 6h ago

Overview

  • ASUS
  • Router

01 Oct 2026
Published
01 Oct 2026
Updated

CVSS v4.0
HIGH (8.9)
EPSS
Pending

KEV

Description

An Active Debug Code vulnerability in certain ASUS router models allows a remote authenticated user, via a crafted HTTP request, to bypass security mechanisms and enable the Telnet service, thereby executing arbitrary commands with root privileges and potentially affecting other devices connected to the router. Refer to the ' Security Update for ASUS Router Firmware ' section on the ASUS Security Advisory for more information.

Statistics

  • 2 Posts

Last activity: 7 hours ago

Fediverse

Profile picture fallback

Learn how to patch critical ASUS security vulnerabilities like CVE-2026-13313 to protect your routers and motherboards from severe network exploits.

securityonline.info/asus-secur

  • 0
  • 0
  • 0
  • 17h ago
Profile picture fallback

CVE-2026-13313 (HIGH, CVSS 8.9) in ASUS routers: Authenticated attackers can enable Telnet via debug code, gaining root command execution. Restrict management access & monitor Telnet until patch info is released. radar.offseq.com/threat/cve-20

  • 0
  • 0
  • 0
  • 7h ago

Overview

  • WatchGuard
  • Fireware OS

30 Sep 2026
Published
30 Sep 2026
Updated

CVSS v4.0
HIGH (8.7)
EPSS
0.42%

KEV

Description

A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to crash the management daemon by sending a specially request to the login interface, resulting in a denial of service.

Statistics

  • 2 Posts

Last activity: 5 hours ago

Bluesky

Profile picture fallback
Vulnerabilities in WatchGuard Fireware OS URL: psirt.watchguard.com/CVE-2026-86134 Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.2
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
~Cybergcca~ Five advisories urge updates; Cisco CVE-2026-76504 is actively exploited. - IOCs: CVE-2026-76504, CVE-2026-86134 - #CVE-2026-76504 #CyberSecurity #ThreatIntel
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • Kiteworks
  • Email Protection Gateway

30 Sep 2026
Published
01 Oct 2026
Updated

CVSS v3.1
CRITICAL (9.4)
EPSS
0.33%

KEV

Description

Kiteworks Email Protection Gateway did not sufficiently restrict which account a certificate could be assigned to. This could allow an attacker to associate a certificate with another user's account, affecting the confidentiality and integrity of that account's encrypted mail and, where certificate-based login is enabled, potentially permitting unauthorized access to the account.

Statistics

  • 2 Posts

Last activity: 12 hours ago

Fediverse

Profile picture fallback

Kiteworks Email Protection Gateway <9.5.1 has a CRITICAL vuln (CVE-2026-102149, CVSS 9.4): attackers can assign certificates to other user accounts, risking encrypted email exposure & unauthorized access. Await patch, consider disabling cert login. radar.offseq.com/threat/cve-20

  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

Kiteworks vulnerabilities fixed in 9.5.1 include CVE-2026-102115, a 9.8 password reset flaw that enables admin account takeover. Patch now.

securityonline.info/kiteworks-

  • 0
  • 0
  • 0
  • 18h ago

Overview

  • Kiteworks
  • Core

30 Sep 2026
Published
01 Oct 2026
Updated

CVSS v3.1
CRITICAL (9.3)
EPSS
0.44%

KEV

Description

A stored cross-site scripting (XSS) weakness in Kiteworks Core could allow an unauthenticated attacker to store crafted content that later executes arbitrary JavaScript in the authenticated session of an administrator who views the affected page. This could have permitted the attacker to gain full administrative control, including the creation of a new administrative account.

Statistics

  • 2 Posts

Last activity: 10 hours ago

Fediverse

Profile picture fallback

CVE-2026-102147: Stored XSS in Kiteworks Core (<9.5.1) rated CRITICAL (CVSS 9.3). Unauth attacker can hijack admin sessions via injected JS — admin takeover risk. No patch yet; restrict access & monitor logs. radar.offseq.com/threat/cve-20 ⚡️

  • 0
  • 0
  • 0
  • 10h ago
Profile picture fallback

Kiteworks vulnerabilities fixed in 9.5.1 include CVE-2026-102115, a 9.8 password reset flaw that enables admin account takeover. Patch now.

securityonline.info/kiteworks-

  • 0
  • 0
  • 0
  • 18h ago
Showing 1 to 10 of 188 CVEs