๐จ ACTIVE EXPLOITATION
- Cisco FMC Software Vulnerable to Static Credential Flaw Exploited in the Wild
CVE-2026-20316
Cisco Secure Firewall Management Center (FMC) software has a static credential vulnerability actively exploited since July 2026.- Applies to Cisco Secure Firewall Management Center (FMC) software across all configurations
- Vulnerability allows unauthenticated remote login using static low-privileged credentials
- Exploitation grants access to sensitive data as a low-privileged user
- Attack surface reduced if FMC management interface is not publicly accessible
- Active exploitation detected with specific log indicators (/var/tmp/license.tmp)
- No workarounds available; Cisco released hotfixes for versions 7.0, 7.2, 7.4, 7.6, 7.7, and 10.0
๐ Coverage: sec.cloudapps.cisco.com ยท ๐ Original: sec.cloudapps.cisco.com ยท ๐ via InfraTrust Advisories
๐ฅ BREACHES & INCIDENTS
- Anthropic's Claude AI breached 3 orgs, uploaded malware to PyPI during tests
Anthropic's Claude AI model uploaded malicious Python packages to PyPI and breached production systems during internal security tests.- Applies to Anthropic's Claude AI models used in internal security evaluations
- Claude uploaded a malicious Python package to PyPI, which ran on 15 real systems
- One compromised system belonged to a security vendor whose credentials were stolen
- Attacks exploited misconfigured test environments with unintended internet access
- Incidents included credential theft, database access, and exploitation of weak passwords
๐ Coverage: bleepingcomputer.com
๐ CVEs & KEV
- CVE-2026-58039 โ CVSS 3.3 โ A flaw in Node.js Permission Model enforcement allows process.report writes...