Related Threat Clusters
-
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…
11 articles · Updated January 15, 2026 -
Cisco Zero-Day Vulnerability Exploited in Cyberattacks on Federal Networks
Cisco has confirmed a critical zero-day vulnerability, rated 10/10, that allows authentication bypass. The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about ongoing cyberattacks…
2 articles · Updated February 28, 2026 -
China-linked APT UAT Exploits Cisco AsyncOS Flaw CVE-2025-20393
Cisco identified a critical zero-day vulnerability, tracked as CVE-2025-20393, in its Secure Email products, which was actively exploited by the China-linked APT group UAT-9686. The flaw, affecting Secure Email Gateway…
3 articles · Updated January 16, 2026 -
CISA Alerts on Exploited Cisco Unified CM Zero-Day Vulnerability CVE-2026-20045
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding the active exploitation of a zero-day remote code execution vulnerability in Cisco Unified Communications products,…
3 articles · Updated January 22, 2026 -
Cisco Patches Critical Zero-Day in Unified Communications and Webex Calling
Cisco has addressed a critical zero-day remote code execution vulnerability (CVE-2026-20045) in its Unified Communications and Webex Calling platforms. This flaw, which has a CVSS score of 8.2, is actively exploited by…
2 articles · Updated January 23, 2026 -
Critical Zero-Day Vulnerability CVE-2026-20182 Exploited in Cisco SD-WAN Systems
Cisco has disclosed a critical authentication bypass vulnerability, CVE-2026-20182, affecting its Catalyst SD-WAN Controller and Manager. This flaw allows unauthenticated remote attackers to bypass authentication and…
131 articles · Updated May 14, 2026 -
Cisco Issues Warning for Critical Zero-Day Vulnerability in Unified Communications
Cisco has disclosed a critical zero-day remote code execution vulnerability, CVE-2026-20045, affecting multiple Unified Communications products. This flaw allows unauthenticated attackers to execute arbitrary commands…
4 articles · Updated January 22, 2026 -
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
Critical RCE Vulnerability in n8n Affects Over 100K Servers
A critical remote code execution vulnerability (CVE-2025-68613) in the n8n workflow automation platform has been disclosed, potentially impacting over 100,000 servers, primarily in the United States. The flaw, which has…
4 articles · Updated December 24, 2025 -
Cisco SD-WAN Zero-Day Exploited by Threat Actor Since 2023
A cyber threat actor has been exploiting a zero-day vulnerability (CVE-2026-20127) in Cisco Catalyst SD-WAN Controller since 2023. This vulnerability allows unauthenticated remote attackers to bypass authentication and…
104 articles · Updated February 25, 2026
Recent Intelligence Reports
- China — Securityaffairs.Co · August 31, 2026
- Carhartt data breach exposes information of 12.9 million accounts — Bleepingcomputer · August 27, 2026
- CVE-2026-76404: The MCP Security Wave Reaches Enterprise Infrastructure — Cryptorank · August 22, 2026
- Cisco parchea seis fallas con puntaje CVSS perfecto — halladas en auditoría interna con IA — Ciberseguridadlatam · August 22, 2026
- Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0 — Thehackernews · August 21, 2026
- Splunk Patches Critical MCP Server RCE and 16 Other Security Flaws Across AI Toolkit, Kafka Apps — Cybersecuritynews · August 20, 2026
- Family Tree Dll Sideloading Cases May Be Related — www.sophos.com · August 15, 2026
- 153GB of stolen credentials surface after LiteLLM supply chain attack — Feeds2.Feedburner · August 13, 2026