Hackers exploit Sangoma Switchvox flaw to deploy reverse shells

2026-09-03T07:23:22Zd18dba9d4d3cb3421245c3f18aef7af33d0b12d4e4712032b63a4105bfb8ce96
CVE-2026-0768CVE-2026-82329CVE-2026-9586BGP hijackingJFrog ArtifactoryLangflowSQL injectionSangoma SwitchvoxSonicWall SMA1000VoIPWordPressactive exploitationauthentication bypassbotnetcloud accountscredential theftdata breachhealthcareliving off the landmalwarephishingransomwareremote code executionsupply-chain attackzero-day

What happened

A BleepingComputer security-news feed covering active exploitation of critical vulnerabilities in Sangoma Switchvox, JFrog Artifactory, Langflow, and SonicWall SMA1000; abuse of legitimate administration tools; supply-chain and BGP-hijacking attacks; malware and botnet activity; and significant healthcare and cloud-account data breaches. Several reports describe unauthenticated remote code execution, authentication bypass, credential theft, reverse shells, and ransomware-related risk.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
d18dba9d4d3cb3421245c3f18aef7af33d0b12d4e4712032b63a4105bfb8ce96
Enrichment time
2026-09-03T07:23:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.