F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild

2026-03-30T07:24:07Z532886767c69651b72d43038b9d228db35c393bfabd9fbdc8b6aca3b5ec01f62
CVE-2026-4681ClickFixCloudflare-themedCorunaDenial-of-ServiceF5 BIG-IPHightowerInfiniti stealerKash PatelMac malwareNuitka loaderOpenAI bug bountyOperation TriangulationPTC WindchillRCERSACTP-Linkdata breachexploited in the wildfake CAPTCHAiOS exploit kitpro-Iranian threat actorrouter vulnerabilities

What happened

SecurityWeek roundup: An F5 BIG-IP flaw initially reported as a DoS has been reclassified as a critical remote code execution (RCE) vulnerability and is being actively exploited. CISA and German authorities flagged a critical PTC Windchill vulnerability tracked as CVE-2026-4681 that prompted police warnings. Other notable incidents include a Cloudflare-themed ClickFix campaign delivering the Infiniti Mac infostealer via fake CAPTCHA, a pro‑Iranian group claiming to have hacked FBI Director Kash Patel’s personal account, TP‑Link patching high‑severity router bugs (auth bypass, arbitrary command

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
532886767c69651b72d43038b9d228db35c393bfabd9fbdc8b6aca3b5ec01f62
Enrichment time
2026-03-30T07:24:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.