DEV Community

Cover image for State of (in)security - Week 37, 2026
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

State of (in)security - Week 37, 2026

Summary

Week 37 of 2026 saw 13 advisories and 31 incidents (up from 27 the prior week), affecting roughly 5.6 million known individuals. The largest is the Veradigm third-party credential-theft breach at 3.5 million. Unauthorized access, ransomware/malware, and third-party compromise are the leading causes and healthcare by far the hardest-hit sector. Critical patches landed across Microsoft, Google, Adobe, Fortinet, SAP, Ivanti and others, alongside five flaws under active exploitation including zero-days in N-able N-central, GitLab, Cisco Secure FMC, Fortinet CAPWAP, and Adobe Commerce/Magento.

Take Action:

Patch the actively exploited flaws first: Adobe Commerce, Windows, Chrome, GitLab, Cisco Secure FMC, Fortinet, Check Point and N-able N-central. Where you can't patch straight away, take management and admin interfaces off the public internet.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)