Overview
Description
Statistics
- 8 Posts
Fediverse
N-able releases N-central Hotfix 4 to address a critical zero-day vulnerability. Learn how to protect your server from remote code execution attacks today.
#Ncentral #ZeroDay #CyberSecurity #CVE202686218 #Vulnerability
Bluesky
Overview
Description
Statistics
- 9 Posts
- 2 Interactions
Fediverse
The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by Sansec, which discovered zero-day exploitation starting September 4, 2026. https://thehackernews.com/2026/09/adobe-patches-magento-zero-day.html
Bluesky
Overview
Description
Statistics
- 5 Posts
- 1 Interaction
Fediverse
Google Chrome 153 (153.0.8010.36/.37) korrigiert 230 Sicherheitslücken – CVE-2026-87491 in der freien Wildbahn
Google patched a Chrome zero-day, CVE-2026-87491, exploited in the wild. Chrome 153 fixes 230 flaws including critical WebGL bugs. Update now.
#Chrome #ZeroDay #Google #CyberSecurity #CVE #V8 #BrowserSecurity #Infosec
Overview
Description
Statistics
- 8 Posts
- 3 Interactions
Fediverse
Only two 0days this month for MS? Bummer.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81963
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85880
Microsoft's September 2026 Patch Tuesday fixes two zero-day flaws, CVE-2026-81963 and CVE-2026-85880, both exploited in the wild.
#PatchTuesday #ZeroDay #Microsoft #Windows #CyberSecurity #CVE #Infosec #VulnerabilityManagement
#Microsoft Plugs Nearly 1,000 #Security Holes
This month’s #patch bundle obliterates the software giant’s previous record set in July, when it released updates for at least 570 security #vulnerabilities. September’s #PatchTuesday brings this year’s total to more than 2,600, more than twice Microsoft’s previous record-setting patch year in 2020 (1,245) and with three more months to go.
There are two “zero-day” flaws fixed this month that are being actively exploited: both CVE-2026-81963 and CVE-2026-85880 allow an attacker to elevate their privileges on #Windows system.
#zeroday #exploit
Fully 113 of the bugs addressed today earned Microsoft’s “critical” rating, meaning they could be abused by malware or miscreants to seize control over a vulnerable Windows machine with little or no help from the user
https://krebsonsecurity.com/2026/09/microsoft-plugs-nearly-1000-security-holes/
Bluesky
Overview
Description
Statistics
- 8 Posts
- 3 Interactions
Fediverse
Only two 0days this month for MS? Bummer.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81963
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85880
Microsoft's September 2026 Patch Tuesday fixes two zero-day flaws, CVE-2026-81963 and CVE-2026-85880, both exploited in the wild.
#PatchTuesday #ZeroDay #Microsoft #Windows #CyberSecurity #CVE #Infosec #VulnerabilityManagement
#Microsoft Plugs Nearly 1,000 #Security Holes
This month’s #patch bundle obliterates the software giant’s previous record set in July, when it released updates for at least 570 security #vulnerabilities. September’s #PatchTuesday brings this year’s total to more than 2,600, more than twice Microsoft’s previous record-setting patch year in 2020 (1,245) and with three more months to go.
There are two “zero-day” flaws fixed this month that are being actively exploited: both CVE-2026-81963 and CVE-2026-85880 allow an attacker to elevate their privileges on #Windows system.
#zeroday #exploit
Fully 113 of the bugs addressed today earned Microsoft’s “critical” rating, meaning they could be abused by malware or miscreants to seize control over a vulnerable Windows machine with little or no help from the user
https://krebsonsecurity.com/2026/09/microsoft-plugs-nearly-1000-security-holes/
Bluesky
Overview
- Microsoft
- Microsoft Malware Protection Engine
Description
Statistics
- 3 Posts
Fediverse
A Windows Defender 0day has public PoC exploit code. ShieldCrash reads files as SYSTEM on all supported Windows versions.
#WindowsDefender #0day #CVE #ShieldCrash #CyberSecurity #Windows #PoC #Infosec
Bluesky
Overview
- SAP_SE
- SAP Extended Passport (EPP) Processing
Description
Statistics
- 5 Posts
- 9 Interactions
Fediverse
OVERPASS: SAP-Kernel-Schwachstelle CVE-2026-44756 erfordert sofortiges Patchen
CVSS-Bewertung: 10,0 (höchste Stufe) | Handlungsbedarf: sofort
OVERPASS is an unauth RCE in the SAP kernel (CVE-2026-44756) and S4GET is a preauth RCE in the SAP NetWeaver's Message Server (CVE-2026-58240).
Both have a very high CVSS and are likely to be exploited.
https://onapsis.com/blog/sap-overpass-remediation/
https://onapsis.com/blog/s4get-cve-2026-58240-sap-message-server-threat-advisory/
Overview
- Fortinet
- FortiSandbox PaaS
Description
Statistics
- 3 Posts
- 1 Interaction
Fediverse
‼️ FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests
Source: https://cybersecuritynews.com/fortisandbox-vulnerability-access-sensitive-data/
The flaw, tracked as CVE-2026-26084, stems from improper access control in the graphical user interface component that FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS all share, and it has been assigned a CVSS v3.1 score of 8.9, placing it firmly in the high-severity category.
FortiSandbox is widely deployed across enterprise and government networks as an advanced threat detection appliance, using sandboxing techniques to analyze suspicious files and network traffic for zero-day malware and other advanced threats.
Fortinet fixed three critical Fortinet vulnerabilities. Attackers can exploit CVE-2026-84390 and CVE-2026-26084 to access corporate data.
#Fortinet #Vulnerabilities #Cybersecurity #InfoSec #PatchManagement
Overview
- Proxmox Server Solutions GmbH
- Proxmox Virtual Environment (VE)
Description
Statistics
- 2 Posts
- 4 Interactions
Fediverse
Cette faille Proxmox corrigée en 2023 est activement exploitée (CVE-2023-54391) https://www.it-connect.fr/proxmox-ve-cve-2023-54391-contournement-authentification/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Proxmox
Bluesky
Overview
- Fortinet
- FortiSwitchManager
Description
Statistics
- 3 Posts
Fediverse
FortiGate Post-Exploitation RAT, PivotC2 Spotted by SOCRadar
The SOCRadar Threat Research Unit (STRU) identified, with high confidence, exploitation of CVE-2025-25249, a heap-based buffer overflow vulnerability in FortiOS and FortiSwitchManager cw_acd daemon....
https://itnerd.blog/2026/09/08/fortigate-post-exploitation-rat-pivotc2-spotted-by-socradar/