Network Security

Cybersecurity
Attackers Hijack Three Country TLDs to Forge Google Certificates
Google says attackers compromised the .gh, .sl and .as registries, altered DNS records and obtained fraudulent HTTPS certificates for Google and other domains.
CVE Vulnerability Alerts
SonicWall Patches CVSS 10.0 Pre-Auth SSRF in SMA1000 Appliances
SonicWall fixed four SMA1000 flaws, led by CVE-2026-102255, a CVSS 10.0 unauthenticated SSRF in the WorkPlace portal. No exploitation has been reported.
Cybersecurity
FBI, Secret Service: FortiBleed Attackers Lock Victims Out of Fortinet
An FBI and Secret Service advisory says a Russian initial access broker is using stolen credentials to lock organizations out of Fortinet FortiGate devices.
Cybersecurity
Four US States Sue TP-Link Over China Risks and Security Claims
Florida, Iowa, Montana and Nebraska sued router maker TP-Link, alleging misleading security claims and concealed China ties. TP-Link calls the claims baseless.
CVE Vulnerability Alerts
ClingSTUN Botnet Abuses STUN Protocol for C2, Exploits Dozens of Flaws
FortiGuard and Nozomi detail Cling, a Linux botnet that hides command traffic in STUN requests and exploits about two dozen router and IoT vulnerabilities.
Cybersecurity
Citrix Patches New NetScaler Zero-Day Hit by Active Attacks
Citrix released emergency patches for CVE-2026-88779, a NetScaler SAML zero-day under active attack that can knock enterprise login gateways offline for users.
CVE Vulnerability Alerts
Critical FortiMail Zero-Day Exploited With No Patch Yet
Fortinet confirmed active exploitation of a critical FortiMail flaw with no fix shipped for most versions, and CISA added it to its exploited list.
CVE Vulnerability Alerts
Cisco Patches Actively Exploited Catalyst SD-WAN Flaw
Cisco patched a critical authentication bypass in Catalyst SD-WAN Manager, formerly vManage, that attackers are actively exploiting to seize full admin control.
CVE Vulnerability Alerts
WatchGuard Patches Critical Root Code Execution Flaw
WatchGuard patched a critical Fireware OS flaw letting a rogue VPN server run root commands on Firebox appliances, plus 14 other bugs in the same ...
CVE Vulnerability Alerts
CISA Warns of Critical Pre-Auth Flaw in MikroTik Routers
CISA warned that a pre-authentication flaw in MikroTik RouterOS lets a single crafted request trigger root code execution or crash the device remotely.