Security news.
Today's cybersecurity landscape is marked by urgent warnings of actively exploited vulnerabilities, significant advancements in AI-driven attack capabilities, and several high-profile data breaches. Defenders face challenges from zero-day exploits in critical infrastructure software and the growing sophistication of threat actors leveraging AI for reconnaissance and exploitation.
Cisco Secure FMC Zero-Day Actively Exploited
A critical zero-day vulnerability (CVE-2026-20316) in Cisco Secure Firewall Management Center (FMC) software is being actively exploited by unauthenticated attackers to gain unauthorized access. CISA has added this flaw to its Known Exploited Vulnerabilities Catalog.
Russian Hackers Exploit Microsoft OWA Flaw
Russian threat actors are exploiting a newly disclosed vulnerability in Microsoft Outlook Web Access (OWA) to maintain mailbox access even after credential rotation, targeting government, telecommunications, financial, hospitality, and aerospace sectors.
Critical Ruflo Flaw Allows Rogue AI Swarms
A maximum-severity flaw (CVE-2026-59726) in Ruflo, an open-source AI agent meta-harness, could allow unauthenticated attackers to execute commands and poison AI memory, potentially leading to persistent malicious behavior.
Chinese Threat Actor Uses AI for Autonomous Cyberattacks
Unit 42 has detailed a Chinese-speaking threat actor combining autonomous AI scanning across seven vulnerabilities with manual exploitation in an advanced cyberattack campaign.
Analog Devices Discloses Data Breach
Semiconductor firm Analog Devices confirmed a data breach after detecting hackers on their systems in June who stole files.
Microsoft Copilot for Word Can Copy Hidden Prompts
Researchers found that hidden instructions in a Word document can make Microsoft 365 Copilot rewrite figures and then copy the same instructions into new documents, raising concerns about prompt integrity.
Chrome 151 Patches 370 Vulnerabilities
A major update to Chrome (version 151) has been released, addressing approximately 370 vulnerabilities, including about 80 critical- and high-severity security defects.
Silver Fox Targets Japanese Manufacturer with BYOVD
The Chinese cybercrime group Silver Fox is employing new drivers in bring your own vulnerable driver (BYOVD) attacks against a Japanese industrial manufacturing organization to deploy ValleyRAT for persistent remote access.