Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
2026-09-06T13:24:00Z•0ae68000658853730db8df7d0846f9448bc36dc741d01a504685831b430be436
CVE-2026-14894CVE-2026-20212CVE-2026-59346CVE-2026-6471CVE-2026-81578CVE-2026-82078CVE-2026-85046Adobe-CommerceCisco-NexusGoogle-ChromeHAProxyMagentoMikroTikPaperCutPostgreSQLVMwareWordPressactive-exploitationcloud-securitycredential-theftcryptominingdata-breachinfostealermalwarenetwork-appliancesphishingprivilege-escalationremote-code-executionspywaresupply-chain-breachthird-party-riskzero-day
What happened
The document aggregates major cybersecurity news, including active exploitation of critical vulnerabilities in network appliances, virtualization software, browsers, enterprise applications, WordPress plugins, and database platforms. It also covers credential theft, phishing, ransomware/criminal infrastructure, supply-chain and third-party breaches, malware campaigns, spyware, and attacker abuse of trusted runtimes. Several incidents involve unauthenticated remote code execution, administrative takeover, data exposure, or vulnerabilities already exploited in the wild.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 0ae68000658853730db8df7d0846f9448bc36dc741d01a504685831b430be436
- Enrichment time
- 2026-09-06T13:24:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.