Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution

2026-09-15T07:24:00Z•539751b6ed96162aae01e7df77a1626cc1675f95a44b8096106d886f49c6ca09
CVE-2026-20079CVE-2026-42016CVE-2026-76461CVE-2026-85706Android malwareChina-linked threat actorCiscoCisco FMCGRAYRABBITGRIMWEDGEGitLabGiteaJFrog ArtifactoryMeshCentralMikroTik RouterOSOAuth token theftQilinRussia-linked threat actorScreenConnectSecure Email GatewayTelegramactive exploitationbrowser extensionpasskey phishingphishingransomwareremote code executionsupply-chain security199? original duplicate? nozero-day

What happened

The document is a September 2026 cybersecurity news digest covering actively exploited vulnerabilities, zero-day and exploit chains, ransomware and espionage campaigns, malicious extensions and applications, confidential-computing attacks, supply-chain compromise, phishing, and AI-assisted cyber operations. Notable incidents include active exploitation of Cisco Secure Email Gateway and Secure Firewall Management Center flaws, GitLab and Gitea vulnerabilities, JFrog Artifactory attacks, malware delivery by China- and Russia-linked actors, credential and data theft, and abuse of legitimate tools

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
539751b6ed96162aae01e7df77a1626cc1675f95a44b8096106d886f49c6ca09
Enrichment time
2026-09-15T07:24:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.