Your passkeys can now move between password managers on Android
2026-09-10T20:51:41Z•231a9ebd63ae8210d8f8259f3c00731648e8a91c3d32165073dc1c925a9f106b
CVE-2026-20079CVE-2026-20316AI security governanceCisco Secure Firewall Management CenterMicrosoft 365OAuth phishingWordPress securityactive exploitationauthentication bypassblob URLbrowser-based phishingcredential theftfake softwareinfostealermalwarenation-state activitypasskeyspassword managersplugin supply chainransomwaresmishingsocial engineeringthird-party risk managementvishing
What happened
Help Net Security reports on Android passkey and password-manager transfers, Microsoft 365 social-engineering attacks targeting employees via personal phones, active exploitation of critical Cisco Secure Firewall Management Center vulnerabilities, WordPress plugin release security screening, malware disguised as a fake GTA 6 download, browser-resident phishing pages using Microsoft OAuth and blob URLs, credential-theft defenses, and emerging AI governance risks. The most urgent item is active exploitation of Cisco FMC flaws CVE-2026-20079 and CVE-2026-20316 by nation-state and ransomware-affは?
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 231a9ebd63ae8210d8f8259f3c00731648e8a91c3d32165073dc1c925a9f106b
- Enrichment time
- 2026-09-10T20:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.