New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing

2026-09-15T01:24:01Z•5c1b63a920b7d0ed1e3e7317eb9ab5ec66ff643a91fec17edb3213afdedc6360
CVE-2026-20079CVE-2026-42016CVE-2026-85706AI-assisted-attacksAndroidCisco-FMCGitLabGiteaWordPressactive-exploitationarbitrary-file-readauthentication-bypassbackdoorbrowser-extensioncloud-securityconfidential-computingcredential-theftcyber-espionagedata-exfiltrationhardware-securitymalwarepath-traversalphishingransomwareremote-code-executionstate-sponsoredsupply-chain-securityvulnerability-exploitation

What happened

September 2026 security news covers actively exploited vulnerabilities, critical unauthenticated remote code execution and file-read flaws, ransomware and espionage campaigns, supply-chain compromises, malicious browser extensions, phishing, AI-assisted attacks, and a hardware attack against confidential-computing protections. Notable incidents include exploitation of GitLab, Cisco FMC, JFrog Artifactory, PaperCut, Gitea, and other internet-facing systems, alongside credential theft and data exfiltration campaigns.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
5c1b63a920b7d0ed1e3e7317eb9ab5ec66ff643a91fec17edb3213afdedc6360
Enrichment time
2026-09-15T01:24:01Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing · Baitaphish