Security Daily Digest
?
← BACK TO TODAY

Cybersecurity news, daily.

2026.03.19

18 sources scanned
FEATURED
01

Interlock Ransomware Exploits Cisco Zero-Day CVE-2026-20131

The Interlock ransomware gang has been actively exploiting a zero-day vulnerability, CVE-2026-20131, in Cisco's Firepower Management Center (FMC) to gain root access. This maximum severity remote code execution (RCE) vulnerability has been under attack since January, allowing adversaries to compromise affected systems. Security teams should prioritize patching and review network activity for indicators of compromise, as this vulnerability poses a significant risk to organizational security.

SRC The Hacker NewsBleepingComputer
02

Apple Patches WebKit Vulnerability Allowing Same-Origin Policy Bypass

Apple has released a Background Security Improvements update to address a critical WebKit vulnerability that enabled a Same-Origin Policy bypass on iOS and macOS devices. This flaw could allow attackers to execute malicious scripts across different origins, potentially leading to data theft or further exploits. Users should update their devices immediately to mitigate this risk and ensure their browsing activities remain secure.

SRC The Hacker NewsBleepingComputer
03

CISA Orders Immediate Patching of Zimbra XSS Vulnerability

CISA has issued an emergency directive for U.S. government agencies to patch a cross-site scripting (XSS) vulnerability in Zimbra, which is being actively exploited in the wild. This vulnerability allows attackers to execute arbitrary scripts in the context of the user's session, potentially leading to data breaches or further network compromise. Agencies must act swiftly to secure their servers and prevent exploitation.

SRC BleepingComputer
SIGNAL

STAY UPDATED

Daily security digest, straight to your inbox.

ARCHIVE