Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR hardening release bundling 7 umbrella CVEs, 2 of which are rated 9.8, with no workaround for any IOS XR version. The Nexus vulnerability, tracked as CVE-2026-20212 (CVSS score: 9.8), is a case of binding to an unrestricted IP address that leaves TCP ports 43210 and 43211 reachable in the default Layer 3 virtual routing and forwarding (VRF) instance.
Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing access to compromised hosts. "Unlike the standard infostealer model, BraZetsu is a comprehensive master toolkit that empowers Initial Access Brokers (IABs) by turning compromised systems into highly valuable commercial assets," Group-IB malware analysts Julio Guapo Menezes and Miguel Salazar said in a technical report.
Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 systems.
This article reports on two SonicWall SMA 1000 zero-day vulnerabilities that are being actively exploited. The flaws, a pre-authentication SSRF and a post-authentication OS command injection, can be chained for full compromise.
ChatGPT and Codex are experiencing a major outage, with users reporting errors across nearly every major ChatGPT feature.
Claude is experiencing an outage, with users encountering elevated errors when sending requests to multiple Anthropic AI models.