Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access

An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN as a zero-day at least two months before it was publicly disclosed, according to new findings from Google-owned Mandiant.

The vulnerability, tracked as CVE-2026-20245 (CVSS score: 7.8), allows an authenticated, local attacker to execute arbitrary commands with elevated privileges

The Hacker News – ​Read More

Cisco SD-WAN Zero-Day Exploited Months Before Patching

CVE-2026-20245, the 7th Cisco SD-WAN vulnerability exploited in 2026, was used for months prior to its disclosure and patching.

The post Cisco SD-WAN Zero-Day Exploited Months Before Patching appeared first on SecurityWeek.

SecurityWeek – ​Read More

MSI’s Katana 15 is a solid midrange gaming laptop and it’s 15% off during Prime Day

Save $200 on MSI’s Katana 15 HX during Prime Day. It houses an Intel Core i7 CPU, RTX 5060 GPU, and a 165Hz QHD display.

Latest news – ​Read More

12 rules of agentic AI for successful enterprise transformation

Most AI pilots focus on capability and speed – and skip the hard work of earning trust from the business.

Latest news – ​Read More

As an avid reader, these are the Kindle Prime Day deals worth buying (accessories, too)

Kindle and other Amazon devices get the biggest price drops of the year, and here are the best deals you can find right now.

Latest news – ​Read More

48 hours later with the Google Home Speaker, I can’t stop talking to Gemini (even if it’s imperfect)

Here’s how the new Google Home Speaker has fared against the likes of my Apple HomePod Mini and Echo Dot Max so far.

Latest news – ​Read More

Attackers Hit Cisco SD-WAN Flaw 2 Months Before Disclosure

Researchers believe rogue peering was used to connect to the victim’s SD-WAN devices to gain admin privileges and root-level access.

darkreading – ​Read More

New website names and shames companies that still don’t offer passkeys to users

According to a new site, 24% of the most popular websites in the world don’t offer support for passkeys, which are considered the most secure way to log into apps and services.

Security News | TechCrunch – ​Read More

The wireless Android Auto adapter that I rely on for long commutes is 15% off right now

The popular wireless dongle lets you connect your Android or iPhone to your car without a physical connection, and it’s now more affordable.

Latest news – ​Read More

Operation Endgame Disrupts StealC, Amadey and SocGholish Malware Networks

Operation Endgame disrupts StealC malware infrastructure, seizing millions of stolen credentials and targeting servers used in global cybercrime campaigns.

Hackread – Cybersecurity News, Data Breaches, AI and More – ​Read More