Security news.
Today's security landscape is dominated by active exploitation targeting critical infrastructure and enterprise appliances, led by zero-day attacks on SonicWall and unpatched AhsayCBS platforms. Federal agencies face urgent remediation deadlines as CISA flags multiple vulnerabilities leveraged by Chinese state-sponsored threat actors, while law enforcement continues its aggressive crackdown on major cybercrime rings including ShinyHunters and Qilin.
Max-Severity SonicWall SMA1000 Flaw Under Active Attack
Threat actors are actively exploiting CVE-2026-102255, a maximum-severity flaw affecting SonicWall SMA1000 appliances patched just days ago.
Flax Typhoon Exploits Five Flaws as CISA Adds Them to KEV Catalog
CISA has ordered federal agencies to patch five vulnerabilities exploited by the Chinese threat actor Flax Typhoon, including legacy flaws such as CVE-2015-3306 in ProFTPD.
Unpatched AhsayCBS Flaws Exploited to Deploy Web Shells and Miners
Attackers are weaponizing unpatched vulnerabilities in the AhsayCBS backup platform, including CVE-2026-105133, to gain remote access and drop cryptocurrency miners disguised as legitimate software.
Citrix Urges Immediate Patching for Critical NetScaler RCE Flaw
Citrix has issued an urgent advisory warning administrators to patch CVE-2026-107406, a critical remote code execution and denial-of-service vulnerability impacting NetScaler ADC and Gateway appliances.
Working Pre-Auth RCE Exploit Released for AnyDesk Linux
Researchers have publicly released a functional exploit for an unauthenticated remote code execution vulnerability in AnyDesk Linux that grants root privileges prior to session approval.
PaperCut Hit by Multiple Pre-Auth RCE Bugs and Patch Bypasses
Security researchers detailed an unauthenticated remote code execution chain and multiple patch bypasses affecting PaperCut servers, tracked under CVE-2026-82077, CVE-2026-82078, and CVE-2026-81578.
FBI Arrests Suspect in ShinyHunters Extortion Operation
Law enforcement has taken another suspected ShinyHunters hacker into custody following the extortion group's recent breach of the FBI's job application portal.
Core Qilin Ransomware Member Extradited and Arrested in Germany
German authorities have arrested an alleged high-ranking Russian member of the notorious Qilin ransomware syndicate following extradition from Japan.