#cisco
50 posts · Last used 15d
CVE-2026-76460: Cisco ISE authentication bypass with CVSS 10.0
🔗 https://cybersecurefox.com/en/cve-2026-76460-cisco-ise-authentication-bypass-cvss-10-0
#CVE-2026-76460 #Cisco #ISE #authentication #bypass #CVSS #10.0 #CISA #KEV
Cisco patched 18 Secure Firewall vulnerabilities in FMC, ASA, and FTD, including critical unauthenticated root remote code execution flaws. Update now.
#Cisco #SecureFirewall #FMC #ASA #FTD #CVE #RCE #NetworkSecurity #InfoSec #PatchNow
https://securityonline.info/cisco-secure-firewall-vulnerabilities-september-2026/?utm_source=mastodon&utm_medium=jetpack_social
I bought a used Cisco CP-9951 for about €35.
Three days later, it was running DOOM natively. :D
ARMv6, MontaVista Linux, /dev/fb1, the real Cisco keypad, local sound, persistent under Applications → Doom — and after installation it even works with the Ethernet cable unplugged.
https://www.dennishilk.com/museum/home-computing-lab/field-notes/field-note-7/
Source/Release:
https://github.com/dennishilk/cisco9951-doom
#DOOM #Linux #Retrocomputing #HardwareHacking #Homelab #Cisco
“Three days later, it was running DOOM natively.” bleibt einfach herrlich. :DD
U.S. #CISA adds #Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog
https://securityaffairs.com/199156/security/u-s-cisa-adds-cisco-secure-email-gateway-flaw-to-its-known-exploited-vulnerabilities-catalog.html
#securityaffairs #hacking
Cisco Secure Email Gateway faces a CRITICAL zero-day vulnerability, actively exploited in the wild. No CVE or version info yet. Patch available — apply ASAP to protect email infrastructure. https://radar.offseq.com/threat/cisco-patches-secure-email-gateway-zero-day-exploited-in-attacks-76a43690673247c4 #OffSeq #Cisco #ZeroDay #BlueTeam #EmailSecurity
🤖 Cisco confirms CVE-2026-20079: maximum-severity authentication bypass in Secure Firewall Management Center (FMC), now actively exploited in attacks. Administrators should prioritize patching affected deployments.
🔗 https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
#CVE #Cisco #CyberSec
Details and PoC for a Cisco Secure Boot bypass vulnerability are public. Learn how this Cisco Secure Boot bypass affects UCS servers and appliances.
#Cisco #SecureBoot #CVE202620293 #UEFI #Cybersecurity
https://securityonline.info/cisco-secure-boot-bypass-poc/?utm_source=mastodon&utm_medium=jetpack_social
Cisco probably violated Middle Eastern and Muslim employees’ civil rights, US agency finds https://www.theguardian.com/technology/2026/aug/31/cisco-civil-rights-palestine-advocacy-violation #Cisco #UsNews #IsraelgazaWar #DiscriminationAtWork
🤖 China-linked espionage group 'Fire Ant' expanded its campaign beyond VMware: now compromising Cisco IOS XR routers, TACACS servers and Linux management hosts to steal credentials and blind security logs, per Sygnia incident response.
🔗 https://thehackernews.com/2026/08/china-linked-fire-ant-hijacks-cisco.html
#CyberSec #Espionage #Cisco #InfoSec
Cisco disclosed seven ClamAV vulnerabilities that let a remote attacker crash scanning via crafted files. Details are public. Patch now.
#ClamAV #Cisco #DoS #CVE202620337 #SecureEndpoint #InfoSec
https://securityonline.info/clamav-vulnerabilities-cisco-dos-advisory/?utm_source=mastodon&utm_medium=jetpack_social
Cisco-rapport: AI kräver snabb modernisering av infrastrukturen.#AI #Cisco #Digitalisering #Finans #IT-infrastruktur
Nätverkstrafiken väntas tredubblas när AI-utvecklingen rusar
CISA Adds Cisco Secure FMC CVE-2026-20316 to KEV
🔗 https://cybersecurefox.com/en/cisco-secure-fmc-cve-2026-20316-kev
#cisco #secure #fmc #cve-2026-20316 #cve-2026-20079 #cisa #kev #static #credentials
New.
Cisco: “Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI https://blog.talosintelligence.com/keep-going-bro-youve-got-this-a-data-driven-look-at-how-adversaries-are-weaponizing-ai/ @TalosSecurity@mstdn.social
More:
"Talos said guardrails 'did not provide much protection', and that it encountered no sophisticated encoding or evasion techniques. Where guardrails did engage, they achieved little, and the pattern held across models and platforms rather than affecting any single vendor."
Infosecurity-Magazine: Cisco: Cybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple Sessions https://www.infosecurity-magazine.com/news/talos-attackers-split-tasks-evade/ #infosec #Cisco #threatresearch #cybercrime
There are two new advisories from Cisco, one addressing a critical vulnerability that was first published on March 4:
CRITICAL: CVE-2026-20079: Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2
The second is a high-severity vulnerability that was first published yesterday:
CVE-2026-20316: Cisco Secure Firewall Management Center Software Static Credential Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-static-cred-BET3Cjh @TalosSecurity@mstdn.social #infosec #vulnerability #Cisco
This Week in Security: What’s in a name, the AI Bugpocalypse Hits Everyone, OpenWRT flaws, and Duress Passwords https://hackaday.com/2026/07/31/this-week-in-security-whats-in-a-name-the-ai-bugpocalypse-hits-everyone-openwrt-flaws-and-duress-passwords/
#HackadayColumns #SecurityHacks #Android #Bugpocalypse #Cisco #CVE #Duress #Freebsd #GrapheneOS #Linux #Microsoft #Openwrt #Oracle #PatchTuesday #Security #ThisWeekinSecurity #Vpn #Wireguard
Could it be considered ironic that...
an internet search for "Cisco china theft" doesn't show any results of the Chinese dictatorship stealing Cisco's hardware designs which gave the CCP regime a leg up to control the "cyberspace" and helped it develop its repressive "Great firewall of China" (and also aided CCP's foreign intrusive "intelligence" gathering...)
and instead the search now brings up only lawsuits claiming Cisco aided the dictatorship in "jailing and torturing" its critics... 🤷🏻♂️
The wonders of "Free World" internet in this era!
And Viva colaboración with hostile dictatorships!
#cisco #ccp #china #ironyisntdead
🚨 BREAKING: If you manage Cisco firewalls, stop what you're doing and check this.
Cisco has confirmed active exploitation of CVE-2026-20316, a hardcoded credentials flaw in Secure Firewall Management Center (FMC).
⚠️ No authentication required.
⚠️ No workaround available.
⚠️ Attackers can remotely log in using a built-in low-privileged account and potentially chain additional vulnerabilities for greater impact.
Cisco has released hotfixes, and CISA has already added the flaw to its Known Exploited Vulnerabilities (KEV) Catalog.
Full breakdown, affected versions, IoCs, and patch guidance👇
https://thecybersecguru.com/news/cisco-fmc-cve-2026-20316-hardcoded-credentials-active-exploitation/
#CyberSecurity #Cisco #CVE202620316 #Infosec #BlueTeam #Firewall #ZeroDay
🤖 CVE-2026-20316 (KEV): Cisco FMC zero-day actively exploited. Unauthenticated attacker can access devices via static credentials. Added to CISA KEV — federal agencies must remediate by Aug 19.
🔗 https://thehackernews.com/2026/07/cisco-fmc-zero-day-actively-exploited.html
#CVE #Cisco #ZeroDay #CISAKEV #CyberSec
🤖 CVE-2026-20316: Cisco FMC static credential flaw exploited in zero-day attacks. The high-severity vulnerability allows unauthenticated access to Secure Firewall Management Center devices. Actively exploited in the wild.
🔗 https://www.bleepingcomputer.com/news/security/cisco-warns-of-fmc-static-credential-flaw-exploited-in-zero-day-attacks/
#CVE #Cisco #ZeroDay #CyberSec







