[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"focus:cisco-fmc-flaws-exploited-by-ransomware-gang-state-sponsored-hackers-mtxooqav":3},{"item":4},{"id":5,"title":6,"slug":7,"summary":8,"severity":9,"category":10,"cve_ids":11,"affected_products":14,"action_required":17,"article_ids":18,"ioc_summary":20,"source_urls":21,"status":23,"expires_at":24,"created_at":25,"updated_at":26,"articles":27},"90a57613-00c4-471a-a638-45e47430e583","Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers","cisco-fmc-flaws-exploited-by-ransomware-gang-state-sponsored-hackers-mtxooqav","Two critical authentication bypass vulnerabilities in Cisco Secure Firewall Management Center (FMC) are being actively exploited by ransomware gangs and state-sponsored actors to deploy Qilin ransomware and Cyclops Blink malware. Any organization running FMC is a direct target. Successful exploitation grants unauthenticated remote code execution with full system compromise.","critical","advisory",[12,13],"CVE-2026-20079","CVE-2026-20316",[15,16],"Secure Firewall Management Center (FMC)","Cisco","Immediately patch Cisco FMC to the latest version addressing CVE-2026-20079 and CVE-2026-20316. In parallel, hunt for exploitation indicators: review FMC access logs for unauthenticated authentication bypass attempts, check for Qilin and Cyclops Blink IOCs on your network, and monitor for lateral movement from compromised FMC instances.",[19],"d0a5a8cf-121b-43b0-8eb6-d83121197085",null,[22],"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fcisco-fmc-flaws-exploited-by-ransomware-gang-state-sponsored-hackers\u002F","active","2026-09-14T01:05:42.78+00:00","2026-09-12T01:05:46.389596+00:00","2026-09-12T01:05:49.485069+00:00",[28],{"id":19,"title":6,"url":22}]