F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild
2026-03-30T07:24:07Z•532886767c69651b72d43038b9d228db35c393bfabd9fbdc8b6aca3b5ec01f62
CVE-2026-4681ClickFixCloudflare-themedCorunaDenial-of-ServiceF5 BIG-IPHightowerInfiniti stealerKash PatelMac malwareNuitka loaderOpenAI bug bountyOperation TriangulationPTC WindchillRCERSACTP-Linkdata breachexploited in the wildfake CAPTCHAiOS exploit kitpro-Iranian threat actorrouter vulnerabilities
What happened
SecurityWeek roundup: An F5 BIG-IP flaw initially reported as a DoS has been reclassified as a critical remote code execution (RCE) vulnerability and is being actively exploited. CISA and German authorities flagged a critical PTC Windchill vulnerability tracked as CVE-2026-4681 that prompted police warnings. Other notable incidents include a Cloudflare-themed ClickFix campaign delivering the Infiniti Mac infostealer via fake CAPTCHA, a pro‑Iranian group claiming to have hacked FBI Director Kash Patel’s personal account, TP‑Link patching high‑severity router bugs (auth bypass, arbitrary command
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 532886767c69651b72d43038b9d228db35c393bfabd9fbdc8b6aca3b5ec01f62
- Enrichment time
- 2026-03-30T07:24:07Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.