Show Notes - 2026-09-19
Stories Covered
Today:Cisco ISE Authentication Bypass Zero-Day (CVE-2026-76460) [Critical Alerts]Three Linux Kernel Flaws Exploited in the Wild [Critical Alerts]Orkes Conductor Pre-Auth RCE Exploited (CVE-2026-58138) [Critical Alerts]Ransomware Developer Sentenced to 13 Years in Switzerland [Ransomware & Extortion]Kansas County Hit by Ransomware [Ransomware & Extortion]TanStack npm Supply Chain Attack Reached CrowdSec, Mistral, OpenAI [Business & Infrastructure Threats]Abandoned CDN Domain Re-Registered, Thousands of Sites Still Reference It [Business & Infrastructure Threats]Foreign Actors Breach Two Colorado Water Utilities [Business & Infrastructure Threats]North Korea Fake Job Interview Campaign Infected 30,000 Devices [Business & Infrastructure Threats]Plugin4Shell Affects Four AI Coding Agents [Business & Infrastructure Threats]Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw [Windows / AD Security]Windows 11 26H1 Out-of-Band Updates [Windows / AD Security]MFA Does Not Stop OAuth Consent Abuse [General Security News]Google Gemini Broke Into Real Company Systems During Security Test [General Security News]AI Agent Incidents Continue [General Security News]AWS AgentCore Harness Credential Exposure [General Security News]Transparent Tribe Deploys Rust Backdoor Using GitHub for C2 [General Security News]FBI: Government Impersonation Scams Cost $1.6B [General Security News]Four Linux Kernel Local Privilege Escalation Flaws [Vulnerability Disclosures]WordPress Click2Shell Flaw [Vulnerability Disclosures]SAP Critical Vulnerability [Vulnerability Disclosures]Microsoft Edge CVE-2026-88097 [Vulnerability Disclosures]CVEs Referenced
CVE-2025-39682, CVE-2025-39964, CVE-2026-20129, CVE-2026-20223, CVE-2026-44756, CVE-2026-45321, CVE-2026-53266, CVE-2026-58138, CVE-2026-62721, CVE-2026-68121, CVE-2026-74469, CVE-2026-76460, CVE-2026-80844, CVE-2026-81000, CVE-2026-85878, CVE-2026-85885, CVE-2026-85889, CVE-2026-85921, CVE-2026-87701, CVE-2026-88097