Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Researchers used Anthropic's Claude AI to port a pre-authentication RCE exploit for CVE-2021-31886 from one WAGO PLC model to another, demonstrating AI's capability in exploit development. The effort required $535.74 in API costs and 8.5 hours, but a subsequent C2 extension attempt permanently bricked the device.
Threat actors are actively exploiting CVE-2026-9586, a critical unauthenticated SQL injection vulnerability in Sangoma Switchvox SMB Edition 8.3, to execute arbitrary code and deploy reverse shells. The flaw, patched in version 8.4.0.2, allows attackers to compromise VoIP systems without credentials, with about 4,000 exposed instances at risk.
The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operation. The effort was undertaken on August 31, 2026, by authorities from the U.S., Bulgaria, Hungary, and Romania, in collaboration with private industry partners CrowdStrike and the Shadowserver Foundation.
SonicWall warned customers that threat actors are chaining two new SMA1000 zero-day vulnerabilities in remote code execution attacks.