Push Security adds malicious browser extension detection to block threats in employee browsers
2026-03-05T14:51:56Z•e9f721844134879201677285edcea2fe95548846636ff27915cccea056c927f1
AI riskBeazleyCVE-2026-20122CVE-2026-20128CVE-2026-28289CiscoFreeScoutGoogle PlayLeakBasePush SecurityReclaim SecuritySD-WANTycoon 2FAagentic commerceexposure managementmalicious browser extensionsmalvertisingphishing-as-a-serviceremediation automationzero-click RCE
What happened
This feed covers multiple high-impact security developments: Cisco confirmed active exploitation of two Catalyst SD‑WAN Manager vulnerabilities (CVE-2026-20128 and CVE-2026-20122) and issued fixes while addressing 48 firewall flaws; FreeScout has a critical unauthenticated, zero-click RCE (CVE-2026-28289) allowing server takeover via a crafted email; Push Security added malicious browser-extension detection/blocking; Europol disrupted the LeakBase forum and the Tycoon 2FA phishing-as-a-service platform; Google announced Play Store policy changes after settling with Epic; reports warn of rising
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- e9f721844134879201677285edcea2fe95548846636ff27915cccea056c927f1
- Enrichment time
- 2026-03-05T14:51:56Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.