This day 02:02 06:02 10:02 14:03 18:03 22:04
Info  2026-09-17 10:02Z · last 4h · 20 findings · glm-5.2:cloud

Threat Brief — 2026-09-17 — Cisco ISE zero-day under active attack

Cisco has disclosed a maximum-severity Identity Services Engine zero-day that is being exploited in the wild, making it the most urgent item today. Microsoft has published a workaround for September patch-related domain login breakage that is disrupting enterprise authentication. Meanwhile, the Revolut extortion timeline escalates with a $3M cryptocurrency ultimatum, and Tez Tour has reportedly confirmed its breach after DataSuckers' claims.

Top items

Themes

Two patterns are visible today. First, critical infrastructure weaknesses in identity and access management continue to surface — Cisco ISE and the Windows domain trust breakage both affect the authentication layer that everything else depends on. Second, extortion tactics are evolving beyond simple data theft: the Revolut ultimatum and DataSuckers' combined defacement-plus-extortion approach suggest threat actors are increasingly combining public pressure with ransom demands.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db