Cisco Moves to Acquire Astrix Security to Tackle Non-Human Identity Risks

2026-05-04T19:24:10Z7f9d6baa17be6a1aaffe97e48f927be4e73035388a0f060056c9f0ba6d4ed9ea
AI-assisted-phishingCISA-KEVCVE-2026-41940NHIaccount-securityacquisitionbluekitcPanelcertificate-authoritycopy-faildata-breachdigicertexploitationlinux-vulnerabilitymalwaremass-compromisemilitary-AI-dealsnon-human-identityopenaiphishing-kitsource-code-breachsupport-portal-compromisezero-day

What happened

Multiple high-impact cybersecurity developments: Cisco announced intent to acquire Astrix Security to protect non-human identities. Trellix confirmed a breach of its source code repository with no detected impact on releases. DigiCert revoked certificates after attackers delivered malware via a customer chat channel and accessed its internal support portal. Exploitation began for the Linux “Copy Fail” vulnerability (added to CISA KEV) with limited observed exploitation. Over 40,000 servers were compromised in active cPanel exploitation likely targeting CVE-2026-41940 (a recently patched zero‑0

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
7f9d6baa17be6a1aaffe97e48f927be4e73035388a0f060056c9f0ba6d4ed9ea
Enrichment time
2026-05-04T19:24:10Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Cisco Moves to Acquire Astrix Security to Tackle Non-Human Identity Risks · Baitaphish