Security news

Latest security news

Yesterday · Tue, 15 Sept 2026

  1. $1 Million Sandbox Challenge Uncovers Linux Kernel Flaws

    AI-assisted researchers flooded Vercel with reports, forcing the company to automate vulnerability triage.

    SecurityWeekLinux
  2. Cisco warns customers of actively exploited zero-day in email gateways

    The company confirmed the defect was exploited before it was disclosed and patched, but it did not describe the nature of the attacks or the scope of impact across its customer base.

    CyberScoopCisco
  3. GNU security advisory (AV26-923)

    Serial number: AV26-923 Date: September 15, 2026 As of September 15, 2026, GNU is affected by vulnerabilities in the following product: libextractor Prior to v1.15 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. libextractor CVE-2026-91752: GNU libextractor Stack Overflow via OLE2 GNU Libextractor

    Canadian Centre for Cyber Security
  4. Zelensky appoints former police chief to lead Ukraine’s cyber coordination center

    Ihor Klymenko, who has experience in law enforcement and as interior minister, will run Ukraine's National Cybersecurity Coordination Center.

    The Record
  5. Hackers target WordPress sites via third-party WooCommerce plugin

    Hackers are actively exploiting a critical vulnerability in the WooCommerce Wholesale Lead Capture premium plugin for WordPress to upload a PHP backdoor.

    BleepingComputerWordPress
  6. IBM security advisory (AV26-922)

    Serial number: AV26-922 Date: September 15, 2026 As of September 14, 2026, IBM is affected by vulnerabilities in the following products: Langflow OSS Prior to or equal to 1.10.0 Prior to or equal to 1.10.2 Prior to or equal to 1.11.2 Prior to or equal to 1.11.5 MQ 10.0.0.0 Prior to or equal to 9.1.0.37 LTS Prior to or equal to 9.2.0.43 LTS Prior to or equal to 9.3.0.41 LTS Prior to or equal to 9.3.5.1 CD Prior to or equal to 9.4.0.25 LTS Prior to or equal to 9.4.5.1 CD Sterling File Gateway Prior to or equal to 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates. Incomplete Security Scanner Blocklist Enables Network-Based Code Execution IBM MQ Java messaging is vulnerable to remote code execution (CVE-2026-13293) IBM Sterling File Gateway is Vulnerable to Improper Access Control (CVE-2026-19290) IBM Product Security Incident Response

    HighCanadian Centre for Cyber SecurityIBM
  7. What Zero-Day Response Should Be in the Post-Mythos Era

    AI is shrinking the time between vulnerability disclosure and exploitation, leaving defenders less time to wait for patches or public exploits. Picus Security explains how exploitability validation, security control testing, and autonomous pentesting can help teams close exposure gaps before attackers arrive.

    BleepingComputer
  8. Thai Broadband Provider Hacked via Fortinet Vulnerability

    The hackers staged numerous scripts for reconnaissance and CVE probing, along with brute-force utilities and privilege escalation tools.

    SecurityWeekFortinet
  9. China spy chief points at US AI models in cyber threat warning

    China's spy chief identified Anthropic’s Claude Mythos and OpenAI’s GPT-5.5-Cyber as signs of what he called a “disruptive upgrade” in cyber capabilities, increasing the speed and potential weaponization of vulnerability discovery and malware development.

    The Record
  10. CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild

    Overview On September 14, 2026, Cisco published a security advisory for CVE-2026-76461 , a critical SQL injection vulnerability affecting Cisco AsyncOS Software for Cisco Secure Email Gateway. The vulnerability has a reported CVSS v3.1 base score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on an affected appliance. Cisco Secure Email Gateway, formerly known as IronPort Email Security Appliance, is an enterprise email security product that inspects inbound and outbound email for threats including phishing, malware, spam, and business email compromise. Because affected gateways process externally delivered email as part of their normal operation, exploitation does not require access to an administrative interface or authentication. An attacker can reportedly trigger the vulnerability by sending a specially crafted email through a vulnerable gateway. CVE-2026-76461 was added to CISA's Known Exploited Vulnerabilities ( KEV ) catalog on the same day as the vendor disclosed the vulnerability, indicating that CVE-2026-76461 was exploited as a zero-day prior to disclosure. Cisco noted that their PSIRT became aware of active

    CriticalUsed in attacksRapid7 BlogCisco

About this news

1,256
Stories
41
Added in the last 24 hours
19
Critical in the last 7 days
4
Reported by several outlets