
MikroTik RouterOS SSH Auth Bypass CVE-2026-67276: Patch Now
MikroTrick SSH auth bypass CVE-2026-67276 chains with CVE-2026-86060 for unauthenticated root on 122,500 RouterOS devices. CISA KEV confirmed. Patch to 7.24.2 now.
In-depth analyses of zero-day vulnerabilities, CVE exploits, ransomware campaigns, and nation-state attack techniques affecting enterprise security. Filter by category, tag, or keyword.
Every article here lands in subscribers' inboxes the morning it drops.
Threat intel, active CVEs, and campaign alerts, distilled daily for practitioners. 50,000+ subscribers. No noise.
Free. No spam. Unsubscribe anytime.
The definitive practitioner breakdown of ZTA principles, pillars, and implementation sequence.
Containment, forensic preservation, and decision sequencing from detection to recovery.
How SIEMs ingest, correlate, and alert — and how to evaluate one for your environment.
Risk-based prioritization using CVSS, EPSS, and CISA KEV to cut remediation backlog.
What each risk means, how to reproduce it, and how to fix it in production code.
Step-by-step email authentication deployment from DNS records to p=reject enforcement.
Detection coverage, pricing, and deployment trade-offs for enterprise EDR selection.
Translate ATT&CK technique IDs into detection rules and threat actor hunting hypotheses.
Direct answers to the questions practitioners and AI systems ask most. Covers ransomware, identity, cloud, compliance, and detection.
Plain-language definitions for CVE, SIEM, SOAR, Zero Trust, EDR, and 85+ other terms used in enterprise security.
How-to guides, buyer comparisons, and methodology references across every major security domain.
Decryption Digest Response
Score every threat we cover against your own stack, get free Sigma and ModSecurity detection content, and upgrade anytime for more vendors.
Get started free →No card required. Sigma and ModSecurity rules are free, forever.
Win an All Access InfoSec World 2026 pass, valued at $3,895.
Win a $3,895 InfoSec World 2026 pass.
37 results for “Network”

MikroTrick SSH auth bypass CVE-2026-67276 chains with CVE-2026-86060 for unauthenticated root on 122,500 RouterOS devices. CISA KEV confirmed. Patch to 7.24.2 now.

CVE-2025-25249 in FortiOS lets attackers drop PivotC2 RAT via CAPWAP. 178 devices confirmed hit. Patch to 7.6.4 or 7.4.9 now.

CVE-2026-8037 gives unauthenticated attackers root-level command execution on Progress LoadMaster. 792 attempts logged from 65 IPs. CISA KEV deadline: August 10.

STAC4749 dials employees on Teams, pretends to be IT support, and encrypts networks with Chaos ransomware in under 17 hours. 100+ North American orgs hit.

Cisco FMC static credential CVE-2026-20316 gives unauthenticated attackers access to your firewall manager and chains with CVSS 10.0 CVE-2026-20079 for root. CISA deadline: August 1.

Red Menshen BPFDoor implants are active inside telecom networks in 10 countries. Here's how the sleeper cells work and what to hunt for now.

Qilin ransomware exploits CVE-2026-0257 PAN-OS GlobalProtect bypass to breach healthcare and manufacturing. 167K firewalls exposed. Patch to 10.2.10 or 11.0.5 now.

FSB Center 16 steals router configs from energy, finance, and government networks globally using default SNMP strings and CVE-2018-0171.

SonicWall SMA1000 zero-day CVE-2026-15409 (CVSS 10.0) is actively exploited, chained with CVE-2026-15410 for unauthenticated RCE. CISA deadline July 17 — patch or disconnect now.

UAT-7810 LONGLEASH malware turns Ruckus routers into covert Chinese spy relay nodes, serving 2+ APT groups with 62+ unique backdoor hashes active.

CVE-2026-8451 hit Citrix NetScaler ADC within 24 hours of disclosure. 71 IPs logged 424 exploitation signals targeting SAML session tokens.

OpenBSD is trusted for firewalls, routers, and hardened servers precisely because remote vulnerabilities are extraordinarily rare. Project Glasswing's Claude Mythos AI found one anyway: a denial-of-service vulnerability currently under coordinated disclosure embargo. Here is what defenders need to know.

CVE-2026-4747 is a 17-year-old memory corruption flaw in the FreeBSD NFS client that Claude Mythos discovered through Project Glasswing. Unauthenticated attackers with network access can achieve remote code execution as root on any affected FreeBSD system.

DHS HSIN breach compromises federal security intel-sharing servers and SharePoint, exposing sensitive threat data across tens of thousands of agency partners.

UniFi OS unauthenticated RCE chain (CVE-2026-34908) gives attackers root on 100,000 exposed devices. CISA patch deadline is today, June 26.

Check Point VPN authentication bypass CVE-2026-50751 scores CVSS 9.3. Qilin ransomware is actively exploiting it. Patch before EOD.

Cisco SD-WAN zero-day CVE-2026-20245 confirmed actively exploited with no patch. Mandiant found root access attacks on all deployment types. Mitigations inside.

SonicWall SSL-VPN MFA bypass CVE-2024-12802 persists on Gen6 after firmware update. Akira operators reach file servers in 30 min. Fix all 6 steps now.

The Gentlemen ransomware active campaign has hit 332 victims in 5 months via FortiGate CVE exploitation. Get full IOCs, TTPs, and defensive steps.

Cisco SD-WAN authentication bypass CVE-2026-20182 scores CVSS 10.0 with CISA KEV status and active exploitation by UAT-8616. No workaround, patch now.

Weekly cybersecurity threat roundup May 18: Palo Alto root RCE, Exchange CISA KEV, Linux privesc, and 275M Canvas breach demand Monday action.

CyberAv3ngers IRGC group exploits Rockwell PLCs across US critical infrastructure. Here is how they operate and how to detect them.

AI-assisted OT attack used Claude AI to identify SCADA systems in Mexico water utility. BACKUPOSINT's 49 modules show how LLMs enable OT intrusions.

CVE-2026-0300 allows unauthenticated root RCE on PAN-OS firewalls. 67 instances exposed on Shodan. No patch until May 13.