Skip to content
ThreatCluster

Interlock Ransomware Exploits Cisco FMC Zero-Day Among 31 Vulnerabilities

First seen 16 Apr 2026, 09:16 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •April 17, 2026 at 08:32 UTC
  • •31 high-impact vulnerabilities exploited in March 2026, including a Cisco zero-day.
  • •Interlock ransomware group is actively targeting enterprise networks.
  • •Affected vendors include Cisco, Microsoft, Google, and Apple, indicating widespread risk.

In March 2026, security researchers identified 31 high-impact vulnerabilities that were actively exploited, including a zero-day vulnerability in Cisco's firewall, which was targeted by the Interlock ransomware group. This exploitation poses significant risks to enterprise networks, affecting major vendors such as Cisco, Microsoft, Google, and Apple. The vulnerabilities span various sectors, indicating a broad scope of impact across core enterprise and developer ecosystems. The attack vector primarily involves the exploitation of unpatched vulnerabilities, with the Cisco FMC zero-day being particularly critical. Organizations are urged to assess their systems for exposure to these vulnerabilities. The current status indicates ongoing exploitation, necessitating immediate attention from security professionals. Specific CVEs were not detailed in the articles, but the urgency of the situation is clear.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 177d ago How this analysis works

Timeline

2026-03-01
31 high-impact vulnerabilities identified as actively exploited.
2026-03-15
Interlock ransomware group begins exploiting Cisco FMC zero-day.
2026-04-16
Articles published detailing the vulnerabilities and exploitation.

More articles in this cluster (2)