[Webinar] Eliminate Ghost Identities Before They Expose Your Enterprise Data

2026-04-20T01:24:08Z0d37bb58bf5171c886c3e960520e4d54417ac1f558a14f53bef218aea9084452
CISA-KEVCVEactive-exploitationandroid-ratapache-activemqbotnetbrowser-extensionsciscocommand-injectioncritical-vulnerabilitiesddosincident-responsemalwaremicrosoft-defendermirain8n-abusenginxobfuscated-C2patchingphp-composerransomware-phishingsapsupply-chain

What happened

Multiple high-impact vulnerabilities and active exploitation campaigns were reported across open-source, enterprise, and consumer ecosystems. Notable incidents include a critical nginx-ui authentication-bypass (CVE-2026-33032, CVSS 9.8) enabling full Nginx takeover, Apache ActiveMQ (CVE-2026-34197) added to CISA's KEV amid active exploitation, and Mirai variant Nexcorium exploiting CVE-2024-3721 to recruit DVRs for DDoS. Other significant items: Microsoft Defender zero-days under active exploitation, critical Cisco identity/Webex flaws (including CVE-2026-20184), a high-severity SAP SQLi (CVE-

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
0d37bb58bf5171c886c3e960520e4d54417ac1f558a14f53bef218aea9084452
Enrichment time
2026-04-20T01:24:08Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.