Magento StyleSmuggler zero-day exploited to deploy Linux backdoor

2026-09-08T01:23:22Ze353dcc585b5daa0ea5a2ce4d04db0e9344d7336cc21c1517f87879ca821a057
CVE-2026-19490Adobe CommerceCitrix NetScalerClickFixLinux backdoorMFA bypassMagentoMicrosoft 365MikroTik RouterOSN-able N-centralScreenConnectactive exploitationblockchaincredential theftdata breachphishing-as-a-serviceremote code executionzero-day

What happened

A BleepingComputer security news digest reporting active exploitation of multiple critical vulnerabilities, including a Magento/Adobe Commerce zero-day, MikroTik RouterOS flaws, a ScreenConnect vulnerability, N-able N-central remote code execution, and Citrix NetScaler authentication bypass CVE-2026-19490. It also covers phishing campaigns bypassing MFA, ClickFix malware delivery, and several major data breaches affecting millions of individuals.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
e353dcc585b5daa0ea5a2ce4d04db0e9344d7336cc21c1517f87879ca821a057
Enrichment time
2026-09-08T01:23:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.