Security news
Latest security news
Yesterday · Tue, 15 Sept 2026
- $1 Million Sandbox Challenge Uncovers Linux Kernel Flaws
AI-assisted researchers flooded Vercel with reports, forcing the company to automate vulnerability triage.
SecurityWeekLinux - Cisco warns customers of actively exploited zero-day in email gateways
The company confirmed the defect was exploited before it was disclosed and patched, but it did not describe the nature of the attacks or the scope of impact across its customer base.
CyberScoopCisco - GNU security advisory (AV26-923)
Serial number: AV26-923 Date: September 15, 2026 As of September 15, 2026, GNU is affected by vulnerabilities in the following product: libextractor Prior to v1.15 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. libextractor CVE-2026-91752: GNU libextractor Stack Overflow via OLE2 GNU Libextractor
Canadian Centre for Cyber Security - Zelensky appoints former police chief to lead Ukraine’s cyber coordination center
Ihor Klymenko, who has experience in law enforcement and as interior minister, will run Ukraine's National Cybersecurity Coordination Center.
The Record - Hackers target WordPress sites via third-party WooCommerce plugin
Hackers are actively exploiting a critical vulnerability in the WooCommerce Wholesale Lead Capture premium plugin for WordPress to upload a PHP backdoor.
BleepingComputerWordPress - IBM security advisory (AV26-922)
Serial number: AV26-922 Date: September 15, 2026 As of September 14, 2026, IBM is affected by vulnerabilities in the following products: Langflow OSS Prior to or equal to 1.10.0 Prior to or equal to 1.10.2 Prior to or equal to 1.11.2 Prior to or equal to 1.11.5 MQ 10.0.0.0 Prior to or equal to 9.1.0.37 LTS Prior to or equal to 9.2.0.43 LTS Prior to or equal to 9.3.0.41 LTS Prior to or equal to 9.3.5.1 CD Prior to or equal to 9.4.0.25 LTS Prior to or equal to 9.4.5.1 CD Sterling File Gateway Prior to or equal to 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates. Incomplete Security Scanner Blocklist Enables Network-Based Code Execution IBM MQ Java messaging is vulnerable to remote code execution (CVE-2026-13293) IBM Sterling File Gateway is Vulnerable to Improper Access Control (CVE-2026-19290) IBM Product Security Incident Response
HighCanadian Centre for Cyber SecurityIBM - What Zero-Day Response Should Be in the Post-Mythos Era
AI is shrinking the time between vulnerability disclosure and exploitation, leaving defenders less time to wait for patches or public exploits. Picus Security explains how exploitability validation, security control testing, and autonomous pentesting can help teams close exposure gaps before attackers arrive.
BleepingComputer - Thai Broadband Provider Hacked via Fortinet Vulnerability
The hackers staged numerous scripts for reconnaissance and CVE probing, along with brute-force utilities and privilege escalation tools.
SecurityWeekFortinet - China spy chief points at US AI models in cyber threat warning
China's spy chief identified Anthropic’s Claude Mythos and OpenAI’s GPT-5.5-Cyber as signs of what he called a “disruptive upgrade” in cyber capabilities, increasing the speed and potential weaponization of vulnerability discovery and malware development.
The Record - CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
Overview On September 14, 2026, Cisco published a security advisory for CVE-2026-76461 , a critical SQL injection vulnerability affecting Cisco AsyncOS Software for Cisco Secure Email Gateway. The vulnerability has a reported CVSS v3.1 base score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on an affected appliance. Cisco Secure Email Gateway, formerly known as IronPort Email Security Appliance, is an enterprise email security product that inspects inbound and outbound email for threats including phishing, malware, spam, and business email compromise. Because affected gateways process externally delivered email as part of their normal operation, exploitation does not require access to an administrative interface or authentication. An attacker can reportedly trigger the vulnerability by sending a specially crafted email through a vulnerable gateway. CVE-2026-76461 was added to CISA's Known Exploited Vulnerabilities ( KEV ) catalog on the same day as the vendor disclosed the vulnerability, indicating that CVE-2026-76461 was exploited as a zero-day prior to disclosure. Cisco noted that their PSIRT became aware of active
CriticalUsed in attacksRapid7 BlogCisco
About this news
- 1,256
- Stories
- 41
- Added in the last 24 hours
- 19
- Critical in the last 7 days
- 4
- Reported by several outlets