Skip to content
iSec News
  • News
  • Cybercrime
  • Risk
  • Policy
  • Privacy
  • Research
  • Cloud
  • Insurance
  • LinkedIn
  • Facebook
  • Cisco Unified CM flaw under active exploitation after public disclosure

    News, Risk, Vendors, Vulnerabilities
    June 25, 2026

    Threat actors are exploiting CVE-2026-20230 in Cisco Unified CM and Unified CM SME, a critical flaw that can enable server-side request forgery and file writes. Cisco has patched affected versions, and WebDialer must be enabled for abuse.

    Cisco Unified CM flaw under active exploitation after public disclosure

Latest NEWS

  • Trump order sets 2030 deadline for federal post-quantum cryptography migration

    June 24, 2026
    Trump order sets 2030 deadline for federal post-quantum cryptography migration

  • Xsolis says phishing attack exposed data of 1.4 million people

    June 24, 2026
    Xsolis says phishing attack exposed data of 1.4 million people

  • GitHub updates actions/checkout to block forked pull request exploits

    June 24, 2026
    GitHub updates actions/checkout to block forked pull request exploits

  • LastPass says Salesforce customer data exposed in Klue supply chain attack

    June 24, 2026
    LastPass says Salesforce customer data exposed in Klue supply chain attack

  • Malicious npm packages found posing as PostCSS tools to deliver Windows RAT

    June 24, 2026
    Malicious npm packages found posing as PostCSS tools to deliver Windows RAT

  • China-linked UAT-8099 targets IIS servers in Asia with BadIIS SEO fraud

    Cybercrime, News, Research, Vulnerabilities

    ·

    January 30, 2026
    China-linked UAT-8099 targets IIS servers in Asia with BadIIS SEO fraud
  • SmarterMail patched critical unauthenticated RCE and path coercion flaws

    News, Vendors, Vulnerabilities

    ·

    January 30, 2026
    SmarterMail patched critical unauthenticated RCE and path coercion flaws
  • Ivanti issues fixes for two critical EPMM code injection zero day flaws

    News, Vendors, Vulnerabilities

    ·

    January 30, 2026
    Ivanti issues fixes for two critical EPMM code injection zero day flaws
  • Google disrupts IPIDEA residential proxy network linked to malware

    Cybercrime, News, Research

    ·

    January 30, 2026
    Google disrupts IPIDEA residential proxy network linked to malware
  • Investigation finds 175,000 publicly accessible Ollama hosts across 130 countries

    Cybercrime, News, Research

    ·

    January 30, 2026
    Investigation finds 175,000 publicly accessible Ollama hosts across 130 countries
Loading…Load More
iSec News
  • LinkedIn
  • Facebook
  • About
  • Editorial Policy
  • Privacy
  • Contact