CVE Tools

ThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New Stories

The Hacker NewsBy The Hacker News

Reported exploitedLocalAICL-CRI-1171VMware vCenter

Our summary

This ThreatsDay roundup reports ransomware exploitation of VMware vCenter flaw CVE-2026-59310, while Cisco Talos-linked reporting covers attacks involving Cisco Secure FMC vulnerabilities CVE-2026-20079 and CVE-2026-20316. Palo Alto Networks and Oasis Security also detailed campaigns abusing malware distribution channels and exposed LocalAI deployments, including root-level command execution and credential theft. Oracle released its September 2026 Critical Security Patch Update for more than 800 vulnerabilities, none identified as actively exploited.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store