1. Image: The Register

    FBI warns FortiBleed attacks are still targeting FortiGate VPN systems

    The FBI says FortiBleed attacks are ongoing against Fortinet FortiGate firewalls and SSL VPN gateways, with reports of legitimate administrators being locked out. One source also reports tens of thousands more victims and additional ransomware groups becoming involved; those details are not corroborated by the other supplied source.

  2. Image: The Register

    Atlassian warns of critical file-access flaw as attackers begin exploitation

    Atlassian’s CVE-2026-21589 affects multiple self-hosted Data Center products, including Jira, Confluence, and Bitbucket, and allows arbitrary or specific-file access. Multiple reports say exploitation has begun; one describes attacks as unauthenticated, while another says access requires knowing a file’s exact name and path and does not allow directory listing.

  3. Image: BleepingComputer

    SonicWall patches maximum-severity pre-authentication SSRF flaw in SMA1000 appliances

    SonicWall released hotfixes for a maximum-severity server-side request forgery flaw in SMA1000 appliances. The flaw could let an unauthenticated attacker send requests through an appliance to reach internal functions. One source says SonicWall reported no evidence that any of four addressed flaws is being exploited; the other source does not address exploitation.

  4. Image: BleepingComputer

    Ransomware has a new target. Is your backup ready?

    BleepingComputer Ransomware groups are increasingly targeting backup infrastructure to eliminate recovery options and increase pressure on victims to pay. Kaseya explains why organizations need isolated, immutable, and regularly tested backups that attackers cannot easily reach.