Five stories · Five leadership decisions · About six minutes
Security.io Daily Headlines
A concise daily briefing covering what happened and the leadership decision each development creates. Audio episodes will appear here as they are produced.
Cisco’s September revision confirms that CVE-2026-20079 is being exploited. Crafted HTTP requests can bypass authentication and execute scripts or commands as root on affected Secure FMC systems. Cisco provides a specific log check and release-specific hot fixes, but no workaround.
Boston Scientific cyber outage crosses into financial materiality · Adobe expands StyleSmuggler remediation beyond patching · Microsoft fixes two Windows zero-days already used for SYSTEM access · Veradigm vendor credentials expose patient data through a limited API · GTIG observes agent-enabled credential harvesting at cloud scale
Adobe hotfix demands a separate StyleSmuggler compromise hunt · SmartHRMS ransomware leaves customers without a recovery point · Modified ScreenConnect clients turn remote support into a propagation path · Ted backdoor makes HAProxy build provenance an incident-control issue · OpenAI wiki incident exposes the weakness of nominal read-only agent controls
N-central Hotfix 4 resets the control-plane decision · StyleSmuggler leaves Magento stores without a vendor patch · Boston Scientific recovery now requires customer-level proof · OpenAI wiki acknowledgement raises the agent incident bar · Berlin’s second leak package adds credential containment
Boston Scientific recovery remains constrained by clinical supply risk · Coder registry compromise turns module updates into secret-theft investigations · C-Track breach exposes the limits of court-vendor assurance · CNIL fine makes healthcare access and monitoring evidence mandatory · ASCII smuggling moves from prompt injection into phishing evasion
Virtualizor update hijack turns routing trust into root compromise · SonicWall SMA 1000 zero-days demand compromise checks, not patch-only closure · Lenovo ID flaw opened Dropbox accounts without Dropbox passwords · Artifactory authentication bypass exploitation raises build-control-plane risk · UK bill puts vendor removal and procurement restrictions on the table
PaperCut’s Sunday indicators make compromise review mandatory · McKesson confirms third-party data theft but leaves customers without application scope · Factory firmware implants make ZBT-derived routers an asset-trust problem · ServiceNow’s three unauthenticated critical flaws put deployment ownership under scrutiny · ATF incident shows why standalone does not mean low consequence
PaperCut zero-day requires isolation, patching and compromise review · Boston Scientific outage reaches manufacturing and fulfilment · US grid order forces inventory of foreign equipment and remote access · TeamPCP arrests do not close open-source supply-chain exposure · ATF major incident exposes assurance gap around standalone systems
Boston Scientific disruption turns cyber recovery into a healthcare supply decision · QTFY domain seizures create a concrete hunt for compromised edge and IoT devices · CISA adds six exploited flaws; NetScaler gateways need immediate triage · Micro-Comm breach exposes a water-sector supplier assurance gap · ATF major-incident disclosure tests assurance for standalone sensitive systems