Cisco SD-WAN make-me-root bug under attack
2026-06-16T07:23:57Z•283c256411b4bd972b48208ec0de51141606f3f4c01768946d6b35bc9c45a017
0-dayArch Linux AURBitLocker bypassCheck Point VPNChrome zero-dayCisco SD-WANGitHubIvanti SentryMiasma wormMicrosoft SurfaceNSO GroupNovo NordiskOracle PeopleSoftPRC-linked espionageQilinShinyHuntersWorld Food Programmecertificate lapsedata breachnpmpolicy/FDCEAransomwaresupply chain
What happened
A roundup of mid-June 2026 security news: multiple actively exploited 0-days (notably Cisco SD‑WAN 'make‑me‑root' issues and an Oracle PeopleSoft 0‑day used by ShinyHunters against 100+ orgs), recently patched or disclosed critical flaws (Check Point VPN, Ivanti Sentry RCEs, Microsoft Surface bricking flaw and a BitLocker bypass), and ongoing Chrome zero‑day activity. Supply‑chain and repo attacks are prominent (Miasma worm, GitHub repo removals, npm auto‑run script changes, Arch AUR malicious commits). Several high‑impact breaches and data exposures were reported (World Food Programme, Novo N
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 283c256411b4bd972b48208ec0de51141606f3f4c01768946d6b35bc9c45a017
- Enrichment time
- 2026-06-16T07:23:57Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.