Interlock ransomware exploits Cisco FMC Zero-Day CVE-2026-20131 to gain root access

Ravi LakshmananMarch 18, 2026Network security/ransomware Amazon Threat Intelligence is warning of an active Interlock ransomware campaign that exploits a recently revealed critical security flaw in Cisco Secure Firewall Management Center (FMC) software. The vulnerability in question, CVE-2026-20131 (CVSS score: 10.0), is a case of insecure deserialization of a user-supplied Java byte stream, which allows an […]

This startup wants enterprise software to look like prompts

Every new technology creates a new environment for us to work in, but it’s not clear how AI will do that. One possibility is that the interface disappears completely. That’s Josh Sirota’s vision. He founded the startup Eragon in August, which just raised $12 million at a $100 million post-money valuation to build an agent […]

Get your threat model right

If the Magecart payload is hidden within the EXIF ​​data of a dynamically loaded third-party favicon, the malicious code never actually touches the repository and repository scanners cannot catch it. If your team employs Claude Code Security for static analysis, this is the exact technical boundary where AI code scanning stops and client-side runtime execution […]

Today’s Live Science: Recurrence of meningitis and fertilizer shock from Iran war

Today’s top news Staff and students queue to receive antibiotics at the University of Kent in Canterbury on March 16, 2026. (Image credit: Carl Court, Getty Images) British health officials say an “explosive” and “unprecedented” meningitis outbreak has struck a university in Kent, England, killing two young people and affecting 13 more. [BBC] The outbreak […]

9 critical IP KVM flaws allow unauthenticated root access across 4 vendors

Ravi LakshmananMarch 18, 2026Network security/vulnerabilities Cybersecurity researchers are warning of the risks posed by low-cost IP KVM (Keyboard, Video, Mouse Over Internet Protocol) devices. These devices can potentially give an attacker extensive control over a compromised host. The nine vulnerabilities discovered by Eclypsium span four different products: GL-iNet Comet RM-1, Angeet/Yeeso ES3 KVM, Sipeed NanoKVM, […]

How Mesh CSMA reveals and blocks attack vectors to Crown Jewel

Today’s security teams have no shortage of tools or data. They are overwhelmed by both. But amid terabytes of alerts, breaches, and misconfigurations, security teams still struggle to understand context. Q: What exposures, misconfigurations, and vulnerabilities chain together to create viable attack vectors for valuable attacks? Even the most mature security team has no easy […]