Uncontrolled Resource Consumption in SNMP
Uninitialized variable flaw (CVSS 5.9) in FortiAnalyzer's SNMP daemon lets remote authenticated attackers cause denial of service via SNMP GETBULK requests.
Fortinet advisory FG-IR-26-172 describes a use of uninitialized variable vulnerability (CWE-457) in the FortiAnalyzer SNMP daemon, scored CVSSv3 5.9. A remote authenticated attacker with user-level permissions can cause a denial of service via SNMP GETBULK requests. The advisory was revised on 2026-09-08.
ZDI-26-530: SonicWall Email Security snmp Command Injection Local Privilege Escalation Vulnerability
ZDI advisory discloses SonicWall Email Security snmp command injection local privilege escalation (CVE-2026-66150, CVSS 7.8).
ZDI advisory ZDI-26-530 describes a command injection vulnerability in the snmp component of SonicWall Email Security, tracked as CVE-2026-66150 with a CVSS score of 7.8. Local attackers who can already execute low-privileged code on the target can escalate privileges on affected installations.
BambooToken: The Malware That Speaks MQTT to Stay Under the Radar
Lumen's Black Lotus Labs uncovered BambooToken, a Windows and Linux malware family using MQTT broker-based C2 and DLL sideloading across Asia since February 2023.
Lumen Black Lotus Labs identified BambooToken, a multiplatform malware family that exchanges commands through MQTT brokers so infected hosts never contact the C2 server directly, active from at least February 2023 through July 2026. The Windows variant sideloads via Tendyron's OnKey hardware-token software used in Chinese banking and government, or impersonates Kingsoft Office, without either vendor's signing certificate being compromised; a Linux build appeared by December 2025 with shell, file transfer, and system information commands. Victims include MikroTik and DrayTek routers in Singapore, Cambodia, and Vietnam reached after internet-wide SNMP scanning, and Lumen cannot attribute the family to any known actor.