Dagoverzicht
donderdag 1 oktober 2026
- 6 direct handelen
- 1 deze week
- 5 reguliere patchcyclus
- 54 nieuws en analyses
Automatisch samengesteld en niet redactioneel beoordeeld. Controleer details altijd bij de bron.
Direct handelen
Actief misbruikt: Fortinet FortiMail (CVE-2026-104286)
- CVE-2026-104286KEV
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- CISA KEV: misbruik bevestigd voor CVE-2026-104286 (Fortinet FortiMail), toegevoegd 1 okt 2026, CISA-deadline voor Amerikaanse overheidsinstanties 4 okt 2026.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Improper limitation of a pathname to a restricted directory
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- De bron meldt actief misbruik of een zero-day.
- CVSS 9,8 volgens de bron.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
AI agent used Zammad zero-days to breach Dutch vulnerability disclosure non-profit
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- De bron meldt actief misbruik of een zero-day.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Zimbra Vulnerability Exploited in the Wild Prior to Public Disclosure
- CVE-2026-73570KEV
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- CISA KEV: misbruik bevestigd voor CVE-2026-73570 (Synacor Zimbra Collaboration Suite (ZCS)), toegevoegd 21 aug 2026, CISA-deadline voor Amerikaanse overheidsinstanties 24 aug 2026.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Zammad Zero-Days Exploited in AI-Powered DIVD Hack
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- De bron meldt actief misbruik of een zero-day.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Cisco Patches Exploited Catalyst SD-WAN Zero-Day Vulnerability
Handelingsperspectief: Direct handelen(binnen 48 uur)
- Stel vast of het product bij jullie of bij een leverancier in gebruik is.
- Installeer de update binnen 48 uur, of pas de mitigatie van de leverancier toe als dat niet kan.
- Controleer op sporen van misbruik en stel bewijs veilig voordat je systemen wijzigt.
Gebaseerd op
- De bron meldt actief misbruik of een zero-day.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Deze week
NCSC-2026-0397 [1.00] [M/H] Kwetsbaarheid verholpen in Apple CoreGraphics
Handelingsperspectief: Deze week(deze week)
- Stel vast of het product in gebruik is.
- Plan de update deze week in, systemen die aan internet hangen eerst.
Gebaseerd op
- NCSC-inschatting: kans middel, schade hoog.
Automatisch afgeleid uit brondata volgens vaste regels. Hoe dit werkt
Reguliere patchcyclus
Geen aanwijzing voor misbruik of hoge ernst: meenemen in de reguliere patchcyclus.
Warning: Multiple Vulnerabilities Identified in WatchGuard Fireware OS, Including Remote Code Execution , Patch Immediately!
Kiteworks patches max severity code injection vulnerability
Legit Security extends automated fixes to vulnerable open-source dependencies
The vulnerabilities AI finds are the ones attackers want
Google says Gemini 4 Argon can find and patch critical software flaws
Nieuws en analyses
Give yourself room to be human
Preparing governments for an era of interconnected cyber risk
Insights from the 2026 Microsoft Digital Defense Report
Warning: Critical Cisco Catalyst SD-WAN Manager authentication bypass grants admin API access. Actively exploited, Patch Immediately!
Securing Water and Wastewater Operational Technology Environments
The Fine Art of Frustrating the Adversary
Cyberveilig gedrag van werknemers blijft achter
Alleged KillSec Ransomware Mastermind a 16-Year-Old
Autonomous AI agents tried to hack US, Canadian government websites
Iranian accused of hacking American universities extradited from Montenegro
Microsoft says threat actors are ahead in the early AI race
OpenAI software attempted to secretly scrape data from dozens of prominent websites
Researchers find Chinese hacking campaigns targeting AI firms, Asian governments
Zero Trust Creator Says Model Holds Firm Against AI-Assisted Attacks
Osavul Lands $10 Million to Spot Hostile Intent Across Cyber, Physical Domains
Police disrupt KillSec ransomware, arrest suspected teenage leader
Amnesty beschuldigt Marokko van spyware-aanvallen via telecomprovider
Hacker Conversations: Rob Juncker, a Knock at the Door and a Moral Compass
Enterprises Struggle to Prepare for AI and Quantum Threats, PwC Says
Police dismantle KillSec ransomware gang allegedly led by 16-year-old
Police Shut Down KillSec Ransomware, Identify Alleged Teen Leader
The Day-One Hole in Zero Trust Architecture
16-year-old suspected leader of KillSec ransomware group arrested
DeepKeep’s AI Lens flags coding agent data leaks and routes destructive commands for approval
Exabeam brings AI-assisted security investigations to data that must stay on-premises
RadarFirst helps teams investigate AI bias, data exposure and unintended actions
Sophos uses agentic AI to show businesses which security fixes deserve funding
Politie vindt 110 terabyte aan gestolen data op servers ransomwaregroep KillSec
AI Has Changed Attack Speed, Not Security Fundamentals
Warlock Ransomware Hits Large Spanish, Portuguese Orgs
Cyberattack on major Polish invoicing platform exposes customer data
Pentagon breach exposes personal data of more than 3 million people
Kevin Mandia’s Armadin Raises $255 Million at $2.5 Billion Valuation
Armadin raises $255.5 million to expand AI offensive security platform
Treasury Blacklists Most-Wanted ATM Malware Developer and His Network
Some car apps are slipping owners’ data to big tech companies
Minister gaat in gesprek met AP over aanpak van spyware-apps
Hackers stole Pentagon personnel records of over 3 million people
500,000 Active Credentials Left Exposed on GitHub
'Nederlander zegt 2FA en wachtwoordmanager te willen gebruiken maar doet dit niet'
Zerodaylekken in ticketsysteem Zammad gebruikt bij hack van DIVD
Google Launches Gemini 4 Argon With Guardrail-Free Access for Vetted Defenders
Sentinel Envelope Plus adds software protection without source code changes
Metamask discloses security incident affecting its infrastructure
BlackFog adds prompt protection and governance for agentic AI
ScreenConnect Client (Ab)used by Attackers, (Thu, Oct 1st)
Many expect AI in the SOC to make entry jobs harder to get
Employment scam victims tripled at financial firms in 21 countries
Product showcase: Proton Drive end-to-end encrypted cloud storage
Google’s SynthID Bio can watermark AI-designed protein binders without breaking them
Srsly Risky Biz: “Rogue AI” isn’t going anywhere
ISC Stormcast For Thursday, October 1st, 2026 https://isc.sans.edu/podcastdetail/10118, (Thu, Oct 1st)
FTC is Investigating OpenAI and Anthropic Over Possible Risks to Consumers
US sanctions 10 over ATM malware scheme tied to Tren de Aragua