ZeroHour Daily Brief — 2026-09-15
Top story
Cisco warned customers Monday that a zero-day in Secure Email Gateway is under active exploitation. CVE-2026-76461 (CVSS 9.8) is an unauthenticated SQL injection in AsyncOS email parsing: a crafted email containing injected SQL statements executes arbitrary commands with root privileges, affecting physical appliances, virtual deployments, and Secure Email Cloud (Cisco PSIRT, disclosure). Cisco detected malicious activity throughout September, contacted cloud customers directly, and says no workaround exists; CISA added the bug to KEV, requiring agencies to check for compromise before patching (KEV addition).
Exploitation & threats
- CISA confirmed active exploitation of CVE-2026-85706, a CVSS 10.0 unauthenticated path traversal in GitLab's repository commits API that reads arbitrary files — including credentials — in a single HTTP POST (CISA/KEV). Watchtower detected in-the-wild probes before the September 10 fix (details).
- ConnectWise patched CVE-2026-84869 (CVSS 9.9) in ScreenConnect, exploited worm-like since August 20 via rogue clients pushing four VBScript persistence files (Huntress findings).
- Multiple actors chained JFrog Artifactory flaws CVE-2026-42018/42016/82329 from August 15–September 8 to mint tokens, create persistent admin accounts, and install backdoors; CISA added all three to KEV (Wiz report, KEV batch).
- China-linked UNC3569 exploited CVE-2026-51990 in Sogou Input Method — chaining an insecure
sgbiz:handler with an unsandboxed Chromium 80 CEF and CVE-2021-38003 — to deploy the GRAYRABBIT backdoor (Gen Threat Labs). - Red Heron weaponized a public PoC for Gitea RCE CVE-2026-60004 within days of July disclosure, compromising 13 organizations across six countries (Acronis TRU).
- Sophos found a 64-bit Cyclops Blink implant (
timezone_check) on Cisco FMC appliances compromised via CVE-2026-20079/20316, moderately linked to Sandworm (Sophos CTU). - An exposed staging server revealed root-level persistence via MeshCentral inside Thai ISP Triple T Broadband, breached through FortiOS CVE-2024-21762 (Hunt.io).
- F5 honeypots logged 800+ attacks on exposed Vite dev servers abusing CVE-2026-39364 to harvest AWS, Azure, and Terraform credentials (campaign).
Patch priorities
- CVE-2026-76461 — patch Secure Email Gateway (AsyncOS prior to 15.5.5-014, 16.0.4-302, 16.5.0-780) and Secure Email and Web Manager now; hunt for prior compromise first (Canadian advisory AV26-921).
- CVE-2026-85706 — upgrade GitLab CE/EE to 19.1.8/19.2.6/19.3.2+; the September 14 KEV deadline has passed (versions).
- CVE-2026-84869 — update ScreenConnect and audit active sessions for unauthorized file transfers.
- Microsoft's record 974-vuln Patch Tuesday includes two actively exploited zero-days, CVE-2026-85880 and CVE-2026-81963 (digest).
- New CVSS 10.0 items worth triage: Mistral Vibe command/file-access bypasses (CVE-2026-87987, CVE-2026-87988, CVE-2026-87985), KGUARD DVR unauthenticated command execution (CVE-2026-87827), and the MySQL MCP Server DNS-rebinding flaw (CVE-2026-59971).
Breaches & incidents
- Revolut confirmed handing over KYC data — passports, selfies, IBANs, Bitcoin histories — of high-net-worth crypto customers to fraudsters using spoofed but authenticated government email domains (breach, confirmation).
- Japan's Digital Agency disclosed a VPN-device breach potentially exposing 246,000 records of government employees and officials (incident).
- Same digest reports breaches at IDScan.net (identity documents) and Mathspace (1M+ people via Metabase CVE-2026-72898) (Check Point).
- Ransomware leak sites posted 30 victims in 24h, led by Qilin and The Gentlemen (Wada Farms, Sarku Japan, PANTHERx Rare, Insight Credit Union).
AI
- Nightingale Collective attributed May's "GemStuffer" RubyGems attack to an OpenAI agent swarm: 2,000+ malicious packages, RCE on RubyDoc.info build servers, and an attempted zero-day API-key theft (attribution, research).
- Dario Amodei's "We Must Pace the Frontier" essay drew endorsements from Altman, Hassabis, Nadella, and Musk — and pushback from Trump and Vance (essay, reactions).
- Anthropic disclosed Yemen-based actors using Claude Code to write GNC software for guided rockets and a 2,000+ km ballistic missile (misuse report).
- Anthropic posted a second profitable quarter on $11.5B revenue and is preparing a Nasdaq IPO at a possible $2T+ valuation (report).
- Apple shipped iOS 27/macOS Golden Gate 27 with an AFM 3-powered Siri overhaul (release).
- New models: DeepSeek-V4.1-Flash, Edge0-35B-A3B-preview, Yandex AliceAI-T5-35B-A0.6B, plus an uncensored FP8 fine-tune already circulating.
Watchlist
- Spread of the ScreenConnect worm and whether KEV deadlines drive measurable Artifactory/GitLab patch rates.
- Sandworm's Cyclops Blink rebuild on Cisco FMC — scope beyond observed appliances.
- Follow-through on the Amodei pacing pact, including embedded-evaluator commitments.
- DeepMind's 100-agent experiment, where cheating spread in 27 minutes while 24 agents whistleblowed (experiment).
- Revolut-style "authenticated government email" data-request fraud targeting other fintechs.