left cover bg
circles

Security Daily.

Tuesday, September 22, 2026

Automatically Curated Security Digest

Collected

11 Articles

Across

2 Trusted Sources

Published

Last Updated 11:35 AM UTC

Coverage

BleepingComputer
CISA
Top Story

CISA Adds One Known Exploited Vulnerability to Catalog

CISAHigh

Why it matters

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

Read Original

11

Articles

2

Sources

1

CVEs

1

Alerts

0

Research

3m

Read Time

Feed Status

CISA1
NIST NVD
BleepingComputer13
PortSwigger Research

Automated Security Digest — This page is an automatically curated cybersecurity digest generated from publicly available security feeds. All articles remain the property of their respective publishers. Click any item to read the original article.

Last generated: Sep 22, 2026, 11:35 AM

Security Alerts

1

Critical alerts and advisories from official agencies.

CISASecurity AlertsHigh

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability This type of vulnerability is a frequent attack vector for…

CVE-2026-7273
Read Original

Cybersecurity News

10

Latest news from trusted cybersecurity publications.

BleepingComputerCybersecurity NewsCritical

New Windows Defender zero-day blocks Microsoft antivirus updates

Over the weekend, security researcher Abdelhamid Naceri (also known as Nightmare Eclipse) released another Microsoft Defender zero-day exploit that blocks antivirus updates. [...]

Read Original
BleepingComputerCybersecurity News

CISA orders feds to patch Zyxel flaw exploited for data theft

​Attackers are now actively exploiting a high-severity vulnerability in Zyxel GS1900 series switches, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). [...]

Read Original
BleepingComputerCybersecurity NewsCritical

BigCommerce alerts merchants of data breach linked to Ribon apps

Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts into online stores. [...]

Read Original
BleepingComputerCybersecurity NewsCritical

CISA alerts of active exploitation of three Linux kernel flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting three Linux kernel vulnerabilities, one of them rated critical. [...]

Read Original
BleepingComputerCybersecurity News

WordPress Click2Shell flaw lets hackers execute PHP on the server

Technical details and a proof-of-concept exploit have been published for a new WordPress cross-site request forgery (CSRF) vulnerability dubbed 'Click2Shell' that affects the platform's Core component. [...]

Read Original
BleepingComputerCybersecurity News

Microsoft to retire Microsoft 365 Companion apps in December

Microsoft will retire the Calendar, People, and Files Microsoft 365 companion apps on December 16 and has asked admins to remove them from managed devices. [...]

Read Original
BleepingComputerCybersecurity News

Google fined €403 million over location data privacy violations

Ireland's Data Protection Commission (DPC) has fined Google €403 million ($463M) for multiple GDPR violations related to processing users' location data. [...]

Read Original
BleepingComputerCybersecurity News

Microsoft fixes broken Excel copy and paste for all Office users

Microsoft has fixed a known issue that causes copy-and-paste failures for Excel users after installing the September 2026 security updates. [...]

Read Original
BleepingComputerCybersecurity News

FBI's CJIS v6.1: What Security Teams Need to Know.

The FBI's CJIS Security Policy v6.1 strengthens requirements around encryption and vulnerability scanning while continuing the shift toward more continuous security assessment. Specops explains what changed and how agencies can address password, MFA, and identity requirements as…

Read Original
BleepingComputerCybersecurity News

Microsoft reminds admins to migrate Entra ID users to passkeys

Microsoft has reminded admins to migrate Entra ID users to phishing-resistant authentication methods to avoid sign-in disruptions after it retires SMS first-factor sign-in starting in February 2027. [...]

Read Original

Share This Digest