left cover bg
circles

Security Daily.

Thursday, September 10, 2026

Automatically Curated Security Digest

Collected

10 Articles

Across

2 Trusted Sources

Published

Last Updated 11:16 AM UTC

Coverage

BleepingComputer
CISA
Top Story

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISAHigh

Why it matters

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

Read Original

10

Articles

2

Sources

2

CVEs

1

Alerts

0

Research

2m

Read Time

Feed Status

CISA4
NIST NVD
BleepingComputer15
PortSwigger Research

Automated Security Digest — This page is an automatically curated cybersecurity digest generated from publicly available security feeds. All articles remain the property of their respective publishers. Click any item to read the original article.

Last generated: Sep 10, 2026, 11:16 AM

Security Alerts

1

Critical alerts and advisories from official agencies.

CISASecurity AlertsHigh

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-25249 Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability CVE-2026-19490 Citrix NetScaler Authentication Bypass Using…

CVE-2025-25249CVE-2026-19490
Read Original

Cybersecurity News

9

Latest news from trusted cybersecurity publications.

BleepingComputerCybersecurity NewsCritical

CISA: WatchGuard RCE flaw now exploited in ransomware attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a critical WatchGuard Firebox firewall vulnerability, which it flagged as actively exploited in December. [...]

Read Original
BleepingComputerCybersecurity News

Microsoft fixes bug that wiped Windows desktop settings

Microsoft says the September 2026 Patch Tuesday updates fix a known issue causing desktop settings to be lost or reset on some Windows devices. [...]

Read Original
BleepingComputerCybersecurity News

Trezor warns users of email provider breach, phishing attacks

Trezor warned customers on Wednesday that threat actors who breached its third-party email provider are targeting them in phishing attacks. [...]

Read Original
BleepingComputerCybersecurity NewsCritical

Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks

Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. [...]

CVE-2026-20079
Read Original
BleepingComputerCybersecurity News

AdaptHealth confirms 4.1 million people exposed in July cyberattack

Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group. [...]

Read Original
BleepingComputerCybersecurity News

Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking

The Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction. [...]

Read Original
BleepingComputerCybersecurity News

US says Chinese firms extracted billions of tokens from frontier AI models

U.S. cybersecurity and intelligence agencies say that six Chinese AI companies conducted industrial-scale distillation attacks on American frontier AI models since at least late 2024. [...]

Read Original
BleepingComputerCybersecurity News

Veradigm warns of patient data breach after ransomware gang claims attack

Healthcare technology company Veradigm disclosed a data breach after a cybersecurity incident at one of its third-party vendors exposed patients' personal data. [...]

Read Original
BleepingComputerCybersecurity NewsCritical

MFA's Weakest Link: Account Recovery Is the New Attack Path

MFA makes account takeover harder, but attackers are increasingly targeting the recovery processes used to reset passwords and authentication methods. Specops explains why stronger identity verification at the service desk is critical to preventing social engineering attacks…

Read Original

Share This Digest