Webinar tomorrow: Inside real-world Google Workspace breaches
2026-09-22T13:23:22Z•fecab0ce70fb10f5cc2b0db28d00e0da95520c7b657f0f3dbe05ebdb0be350b0
CVE-2026-86296CISACSRFD-Link DIR-822AGoogle WorkspaceLinux kernelMicrosoft DefenderOAuth abuseWordPressZyxel GS1900active exploitationdata breachnpm malwareproof-of-conceptremote code executionsocial engineeringsoftware supply chainzero-day
What happened
Security news feed covering actively exploited vulnerabilities, zero-days, proof-of-concept exploits, supply-chain malware, cloud identity attacks, and data breaches. Notable items include a maximum-severity unpatched D-Link DIR-822A router vulnerability with public PoC code, active exploitation of Zyxel switch and Linux kernel flaws, a Windows Defender update-blocking zero-day, a WordPress CSRF-to-PHP execution flaw, and malicious npm packages executing payloads at runtime.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- fecab0ce70fb10f5cc2b0db28d00e0da95520c7b657f0f3dbe05ebdb0be350b0
- Enrichment time
- 2026-09-22T13:23:22Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.