Cisco News Articles
Recent news articles refferecing the vendors vulnerabilities.
Cisco Zero-Day Highlights API Endpoint Authentication Issues
The authentication bypass flaw CVE-2026-76460 impacts Cisco's Identity Services Engine (ISE) and received a maximum 10 out of 10 CVSS score.
2 days ago
Attackers use SQL injection emails to root Cisco gateways
Key points Cisco warns attackers are exploiting a previously unknown flaw, CVE-2026-76461, rated 9.8 out of 10.0, to run arbitrary commands as root on Secure Email Gateway appliances. No login is required,...
3 days ago
Cisco Warns of Active Exploitation of Critical ISE Flaw
Cisco urged ISE customers to apply a software update, as well as check for signs of exploitation
3 days ago
Unauthenticated attackers are bypassing Cisco ISE's management interface (CVE-2026-76460) - Help Net Security
Cisco confirmed attackers are hitting CVE-2026-76460, an authentication bypass bug in an API of Cisco Identity Services Engine (ISE).
4 days ago
Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
Cisco ISE CVE-2026-76460 is under active exploitation; successful exploitation may yield root command execution.
4 days ago
Cisco warns of max severity ISE zero-day exploited in attacks
Cisco has released security updates to address a maximum-severity Identity Services Engine vulnerability that attackers are actively exploiting in the wild.
4 days ago
Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day
Cisco has patched an exploited Identity Services Engine zero-day authentication bypass vulnerability tracked as CVE-2026-76460.
4 days ago
Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day
Cisco has patched an exploited Identity Services Engine zero-day authentication bypass vulnerability tracked as CVE-2026-76460.
4 days ago
Cisco Secure Email Gateway Zero-Day Exploited for Root Command Execution | eSecurity Planet
Cisco Secure Email Gateway flaw CVE-2026-76461 is actively exploited. See affected AsyncOS versions, fixed releases, and compromise checks now.
4 days ago
Cisco Email Gateways Fall to One Malicious Message: Root Access via SQL Injection Now in the Wild
Cisco disclosed CVE-2026-76461, a critical SQL injection in AsyncOS email parsing that lets attackers gain unauthenticated root access by sending one crafted message. The zero-day is under active exploitation, with no workarounds available. Organizations must patch immediately and hunt for compromis...
5 days ago
Cisco email gateway flaw gives attackers root access
Cisco has patched CVE-2026-76461, a critical Secure Email Gateway flaw that lets remote attackers execute commands with root privileges without credentials.
5 days ago
Cisco users urged to patch email gateway flaw | Computer Weekly
Cisco warns defenders to patch a critical vulnerability in its Secure Email Gateway appliance that may be used by attackers to gain root privileges.
5 days ago
Cisco patches actively exploited email gateway zero-day (CVE-2026-76461) - IT Security News
2026-09-15 13:09 Attackers have leveraged a zero-day SQL injection vulnerability (CVE-2026-76461) to compromise Cisco Secure Email Gateway appliances, Cisco confirmed on Monday. The vendor’s...
5 days ago
Cisco patches actively exploited email gateway zero-day (CVE-2026-76461) - Help Net Security
Attackers have leveraged a zero-day SQL injection vulnerability (CVE-2026-76461) to compromise Cisco Secure Email Gateway appliances.
5 days ago
Cisco patches Secure Email Gateway zero-day exploited in attacks
Cisco warned customers to patch a critical Secure Email Gateway zero-day security flaw that threat actors have been exploiting in attacks.
6 days ago
Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
Cisco says CVE-2026-76461 is under active exploitation and can enable root command execution on Secure Email Gateway.
6 days ago
Root RCE Zero-Day in Cisco Secure Email Gateway Under Active Exploitation
Cisco warned customers on Monday that a zero-day vulnerability affecting Secure Email Gateway appliances has been exploited in the wild. The vulnerability is identified as CVE-2026-76461 and has a CVSS score...
6 days ago
'Sandworm' Chains Cisco Flaws to Deploy Cyclops Blink
The notorious Russian threat group is spreading an upgraded version of the botnet malware, which the FBI disrupted in 2022.
6 days ago
Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware - SwapUpdate
Ravie LakshmananSep 11, 2026Vulnerability / Malware
1 week ago
Cisco Firewall Manager Hacked by Sandworm Espionage Implant and Qilin Ransomware
Cisco FMC vulnerability CVE-2026-20079 (CVSS 10.0) is under active exploitation by Sandworm -- the Russian GRU hacking unit -- and a Qilin ransomware affiliate. Cisco Talos documented three attacker
1 week ago
Cisco flags active attacks through critical FMC flaws
Cisco has warned that attackers are actively exploiting two vulnerabilities in its Secure Firewall Management Center software with intrusions leading to
1 week ago
Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware
Cisco says three threat clusters exploited two patched FMC flaws to gain access, steal credentials, and deploy Qilin ransomware.
1 week ago
Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers
Cisco Talos says two recently patched Secure Firewall Management Center (FMC) vulnerabilities have been exploited by three separate threat clusters linked to ransomware and state-sponsored attacks.
1 week ago
Hackers Exploit Critical Cisco Firewall Flaw to Gain Root Access and Deploy Malware
Cisco Talos has confirmed active exploitation of two vulnerabilities affecting Cisco Secure Firewall Management Center (FMC) Software, with state-sponsored hacking groups and a ransomware affiliate leveraging the flaws to seize root access, plant malware, and stage attacks on enterprise networks.
1 week ago

Cisco FMC bugs exploited by nation-state and ransomware actors (CVE-2026-20079, CVE-2026-20316) - Help Net Security
Attackers are actively exploiting CVE-2026-20079, a critical authentication bypass vulnerability in Cisco Secure Firewall Management Center.
1 week ago