
Fire Ant Hijacks Cisco IOS XR Routers - CVE-2026-0768
Fire Ant APT targets Cisco IOS XR routers and TACACS+ servers. CVE-2026-0768 Langflow RCE and CVE-2026-82329 Artifactory bypass exploited in the wild.
Posts

Fire Ant APT targets Cisco IOS XR routers and TACACS+ servers. CVE-2026-0768 Langflow RCE and CVE-2026-82329 Artifactory bypass exploited in the wild.

KindaRails2Shell Rails RCE actively exploited via file read chain. Fire Ant targets Cisco IOS XR and TACACS. Claude sessions hijacked by infostealers.

Three CVSS 10.0 ServiceNow AI Platform flaws patched; ZBT routers ship with factory backdoors CVE-2026-74232; PaperCut zero-day exploited in the wild.

FBI takes down QTFY Chinese state proxy that breached Federal Reserve and DOJ. CVE-2026-8452 NetScaler exploited in the wild.

CVE-2026-73570 breaches 270+ Zimbra servers; CISA flags 100+ water systems targeted via exposed OT; Gitea RCE CVE-2026-60004 hits KEV.

Three weeks ago we told you what to watch at Hacker Summer Camp. Now it's over - and one attack sums up the whole week: Ghostjacking hijacked an AI coding agent

CVE-2026-73570 compromises 270+ Zimbra servers with CISA 72-hour deadline. Plus CVE-2026-21962 Oracle WebLogic CVSS 10.0 and Iranian OT attacks.

CVE-2026-18963 allows unauthenticated Keycloak password resets. Plus Iran-linked OT attack shuts UK power plant and Spring ships 91 CVE patches.

CVE-2026-69836 Entra ID max-severity RCE exploited in the wild. AI-generated PLC exploits hit US infrastructure. NetScaler auth bypass patched.

Talos exposes AI-generated Linux rootkit in SPECTRE campaign. NSA confirms AI in OT attacks. Critical Cisco Crosswork and Citrix NetScaler auth bypasses.