Vulnerabilities Cisco Patches Another SD-WAN Zero-Day, the Sixth Exploited in 2026 The zero-day, tracked as CVE-2026-20182, has been exploited in targeted attacks by a sophisticated threat actor identified as UAT-8616. Eduard KovacsMay 15, 2026
Network Security Cisco Patches High-Severity Vulnerabilities in Enterprise Products Successful exploitation of the flaws could lead to code execution, server-side request forgery attacks, and denial-of-service conditions. Ionut ArghireMay 7, 2026
Artificial Intelligence Cisco Moves to Acquire Astrix Security to Tackle Non-Human Identity Risks The acquisition strengthens Cisco’s push into identity-centric security for AI and machine access. Mike LennonMay 4, 2026
Artificial Intelligence Cisco Releases Open Source Tool for AI Model Provenance The new kit aims to address risks related to poisoned models, regulatory issues, supply chain integrity, and incident response. Eduard KovacsMay 1, 2026
Malware & Threats US Federal Agency’s Cisco Firewall Infected With ‘Firestarter’ Backdoor The malware provides remote access and control of infected devices and maintains post-patching persistence. Ionut ArghireApril 24, 2026
Vulnerabilities Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities CISA expanded the KEV catalog with eight flaws, but five of them have been flagged as exploited before. Ionut ArghireApril 21, 2026
Vulnerabilities Cisco Patches Critical Vulnerabilities in Webex, ISE The flaws can be exploited remotely to impersonate users or execute arbitrary commands on the underlying OS. Ionut ArghireApril 16, 2026
Vulnerabilities Cisco Patches Critical and High-Severity Vulnerabilities The bugs could lead to authentication bypass, remote code execution, information disclosure, and privilege escalation. Ionut ArghireApril 2, 2026
Vulnerabilities Cisco Patches Multiple Vulnerabilities in IOS Software The high- and medium-severity flaws could lead to denial-of-service, secure boot bypass, information disclosure, and privilege escalation. Ionut ArghireMarch 26, 2026
Ransomware Cisco Firewall Vulnerability Exploited as Zero-Day in Interlock Ransomware Attacks Amazon found evidence that the FMC software vulnerability has been exploited since late January, and found links to Russia. Eduard KovacsMarch 19, 2026
Vulnerabilities Cisco Patches High-Severity IOS XR Vulnerabilities The security defects could lead to denial-of-service (DoS) conditions, command execution, or device takeover. Ionut ArghireMarch 12, 2026
Vulnerabilities Recent Cisco Catalyst SD-WAN Vulnerability Now Widely Exploited WatchTowr reports seeing exploitation attempts for CVE-2026-20127 from numerous unique IP addresses. Eduard KovacsMarch 8, 2026
Vulnerabilities Cisco Warns of More Catalyst SD-WAN Flaws Exploited in the Wild The networking giant has added the recently patched CVE-2026-20128 and CVE-2026-20122 to the list of exploited vulnerabilities. Eduard KovacsMarch 5, 2026
Vulnerabilities Cisco Patches Critical Vulnerabilities in Enterprise Networking Products Cisco has rolled out patches for 48 vulnerabilities in Firewall ASA, Secure FMC, and Secure FTD products. Ionut ArghireMarch 5, 2026
Malware & Threats Cisco Patches Catalyst SD-WAN Zero-Day Exploited by Highly Sophisticated Hackers Already added to CISA’s KEV catalog, the flaw allows attackers to bypass authentication and gain administrative privileges. Ionut ArghireFebruary 26, 2026
Vulnerabilities Cisco, F5 Patch High-Severity Vulnerabilities The security defects can lead to DoS conditions, arbitrary command execution, and privilege escalation. Ionut ArghireFebruary 5, 2026
Vulnerabilities Hackers Targeting Cisco Unified CM Zero-Day Cisco has released patches for CVE-2026-20045, a critical vulnerability that can be exploited for unauthenticated remote code execution. Eduard KovacsJanuary 22, 2026
Vulnerabilities Cisco Patches Vulnerability Exploited by Chinese Hackers UAT-9686 exploited the bug to deploy the AquaShell backdoor on Cisco appliances with certain ports open to the internet. Ionut ArghireJanuary 16, 2026
Malware & Threats China-Linked Hackers Exploiting Zero-Day in Cisco Security Gear The critical zero-day is tracked as CVE-2025-20393 and it impacts Secure Email Gateway and Secure Email and Web Manager appliances. Eduard KovacsDecember 18, 2025
Government CISA Updates Guidance on Patching Cisco Devices Targeted in China-Linked Attacks Federal agencies have reported as ‘patched’ ASA or FTD devices running software versions vulnerable to attacks. Ionut ArghireNovember 13, 2025