New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
2026-09-15T01:24:01Z•5c1b63a920b7d0ed1e3e7317eb9ab5ec66ff643a91fec17edb3213afdedc6360
CVE-2026-20079CVE-2026-42016CVE-2026-85706AI-assisted-attacksAndroidCisco-FMCGitLabGiteaWordPressactive-exploitationarbitrary-file-readauthentication-bypassbackdoorbrowser-extensioncloud-securityconfidential-computingcredential-theftcyber-espionagedata-exfiltrationhardware-securitymalwarepath-traversalphishingransomwareremote-code-executionstate-sponsoredsupply-chain-securityvulnerability-exploitation
What happened
September 2026 security news covers actively exploited vulnerabilities, critical unauthenticated remote code execution and file-read flaws, ransomware and espionage campaigns, supply-chain compromises, malicious browser extensions, phishing, AI-assisted attacks, and a hardware attack against confidential-computing protections. Notable incidents include exploitation of GitLab, Cisco FMC, JFrog Artifactory, PaperCut, Gitea, and other internet-facing systems, alongside credential theft and data exfiltration campaigns.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 5c1b63a920b7d0ed1e3e7317eb9ab5ec66ff643a91fec17edb3213afdedc6360
- Enrichment time
- 2026-09-15T01:24:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.