Push Security adds malicious browser extension detection to block threats in employee browsers

2026-03-05T14:51:56Ze9f721844134879201677285edcea2fe95548846636ff27915cccea056c927f1
AI riskBeazleyCVE-2026-20122CVE-2026-20128CVE-2026-28289CiscoFreeScoutGoogle PlayLeakBasePush SecurityReclaim SecuritySD-WANTycoon 2FAagentic commerceexposure managementmalicious browser extensionsmalvertisingphishing-as-a-serviceremediation automationzero-click RCE

What happened

This feed covers multiple high-impact security developments: Cisco confirmed active exploitation of two Catalyst SD‑WAN Manager vulnerabilities (CVE-2026-20128 and CVE-2026-20122) and issued fixes while addressing 48 firewall flaws; FreeScout has a critical unauthenticated, zero-click RCE (CVE-2026-28289) allowing server takeover via a crafted email; Push Security added malicious browser-extension detection/blocking; Europol disrupted the LeakBase forum and the Tycoon 2FA phishing-as-a-service platform; Google announced Play Store policy changes after settling with Epic; reports warn of rising

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
e9f721844134879201677285edcea2fe95548846636ff27915cccea056c927f1
Enrichment time
2026-03-05T14:51:56Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.