Daily Digest

Critical Exploits, Data Breaches, and AI's Growing Role in Cybersecurity

September 15, 2026
8 articles (6 new, 2 updated)
24 min read

Summary

Critical Vulnerabilities Under Active Exploitation:

  • GitLab's CVSS 10.0 Flaw (CVE-2026-85706): CISA has extended the patching deadline for federal agencies to September 16, 2026, underscoring the ongoing critical nature of this vulnerability and the urgency for all organizations to apply available patches.
  • CISA KEV Adds Flaws in Artifactory, ScreenConnect, RouterOS: New details reveal worm-like attacks exploiting ConnectWise ScreenConnect (CVE-2026-84869), with a rogue client propagating malicious VBScript payloads. ConnectWise has released an urgent patch (version 26.6.5), and CISA has mandated a three-day patching period for federal agencies.
  • Cisco Patches Actively Exploited Zero-Day in Secure Email Gateways (CVE-2026-76461): Cisco has issued emergency patches for a critical SQL injection vulnerability in its Secure Email Gateway appliances, which is being actively exploited. CISA has added it to the KEV catalog, mandating federal agencies to patch by September 17, 2026.
  • Chinese Hackers Exploit Critical Flaw in Tencent's Sogou IME Software (CVE-2026-51990): A critical vulnerability in Tencent's Sogou Input Method, used by millions, is being actively exploited by a Chinese threat actor. The flaw allows for one-click remote code execution via a malicious link, potentially deploying a backdoor.

New Threats and Advisories:

  • Accela Discloses Data Breach Involving 1TB of Data After 277 Days: Accela, a government cloud software provider, reported a data breach from December 2025, with the ransomware group Everest claiming responsibility for exfiltrating 1TB of internal data, including personal information of California residents.
  • Iranian Spies Use Telegram-Controlled Malware 'HEAVYGRAM' on Dissidents: A joint advisory from the U.S., U.K., and Netherlands details a cyber-espionage campaign by Iran's MOIS using HEAVYGRAM malware to spy on dissidents, journalists, and activists, leveraging Telegram for covert command-and-control.

Policy & Industry Notes:

  • AI Becomes Top Driver for New Cybersecurity Spending, Report Finds: A new report indicates Artificial Intelligence is the primary focus for new cybersecurity investments in 2026, with 69% of CISOs allocating funds to AI-powered tools for security operations automation and identity management.
  • NIST Finalizes Guidelines to Protect Digital Identity and Access Tokens: NIST has published final guidelines aimed at securing digital identity and access tokens, providing expanded advice on key management, and incorporating new considerations for AI systems and migration to post-quantum cryptography.

Filter by Category

New Articles (6)

Updated Articles (2)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.