Top 5 Cybersecurity News

Top 5 Cybersecurity News September 25 2026 DIESEC weekly security briefing

This week’s Top 5 Cybersecurity News follows a thread that has been building across 2026: attackers are no longer trying to bypass the perimeter; they are subverting the infrastructure that maintains it. Russia’s Sandworm group deployed an updated Cyclops Blink botnet variant through Cisco’s firewall management console, turning the administrative plane into an entry point.…

Read More

Cisco Secure FMC CVE-2026-20316 Exploited

Cisco Secure FMC CVE-2026-20316 is under active attack via hardcoded credentials that chain into a CVSS 10.0 root bypass. Patch now.

Cisco Secure FMC CVE-2026-20316 is under confirmed active exploitation: a hardcoded, low-privilege account built into every on-premises Secure Firewall Management Center gives an unauthenticated attacker a foothold — and in the same advisory cycle, Cisco quietly reactivated a five-month-old, maximum-severity root-level bypass in the same product, sharing an identical indicator of compromise. CISA added the…

Read More