[Webinar] Find and Eliminate Orphaned Non-Human Identities in Your Environment
2026-04-16T13:24:17Z•9557c0bfdf6bd641fce58c4c28601781ef253bd3596ed2aaf1b8a1fb65eb4d09
Android-malwareCISA-KEVCVEChrome-extensionsCiscoMicrosoftObsidianPHP-ComposerRATsSAPShowDocactive-exploitationcritical-vulnerabilitiesdata-theftidentity-servicesn8nnginx-uipatch-managementphishingsupply-chain
What happened
A broad set of high-impact security stories: multiple critical/actively exploited vulnerabilities were disclosed and patched (notably Cisco SSO flaw CVE-2026-20184, nginx-ui authentication bypass CVE-2026-33032, and an SAP SQLi CVE-2026-27681), Microsoft released a large Patch Tuesday including a SharePoint zero-day, and CISA added several KEV entries (including CVE-2026-21643). Additional high-risk flaws include Composer command-execution issues (CVE-2026-40176) and an actively exploited ShowDoc RCE (CVE-2025-0520). Parallel threat activity includes targeted malware/RAT campaigns (PHANTOMPULS
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 9557c0bfdf6bd641fce58c4c28601781ef253bd3596ed2aaf1b8a1fb65eb4d09
- Enrichment time
- 2026-04-16T13:24:17Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.