ISC Stormcast For Wednesday, September 9th, 2026 https://isc.sans.edu/podcastdetail/10086, (Wed, Sep 9th)

2026-09-09T07:23:41Z718e5e710179f5923024d5112d5edcf9c58a2eab375b7fcdc01191e435e06a7b
AstarothBrazilian PortugueseGuildmaMicrosoft Patch TuesdayMikroTikSANS ISCSSH authentication bypassWindows privilege escalationactive exploitationcompromise persistencemalwarephishingremote code executionvulnerability management

What happened

SANS Internet Storm Center feed covering September 2026 security events, including a record Microsoft Patch Tuesday with 973 vulnerabilities and 113 critical issues, two vulnerabilities exploited in the wild, an actively exploited MikroTik SSH authentication-bypass vulnerability with post-compromise account persistence, and a Guildma/Astaroth malware infection delivered through Brazilian Portuguese email.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
718e5e710179f5923024d5112d5edcf9c58a2eab375b7fcdc01191e435e06a7b
Enrichment time
2026-09-09T07:23:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.