<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Actively-Exploited on CuraSec</title><link>https://curasec.metacog.co.kr/tags/actively-exploited/</link><description>Recent content in Actively-Exploited on CuraSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 10 Sep 2026 14:58:06 +0000</lastBuildDate><atom:link href="https://curasec.metacog.co.kr/tags/actively-exploited/index.xml" rel="self" type="application/rss+xml"/><item><title>Cisco Secure FMC auth bypass CVE-2026-20079 actively exploited</title><link>https://curasec.metacog.co.kr/insights/2026-09-10-cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-a/</link><pubDate>Thu, 10 Sep 2026 14:58:06 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-09-10-cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-a/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Act:&lt;/strong> Patch Cisco Secure FMC immediately — CISA KEV listed, EPSS 0.75, public PoC on GitHub, and Cisco confirms active exploitation of this max-severity auth bypass. Check Cisco&amp;rsquo;s advisory for the patched version and apply it within your emergency patch window.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Act:&lt;/strong> Assume-breach posture for any environment with exposed FMC — sweep for unauthorized access or lateral movement from the FMC management plane since the vulnerability is actively exploited with a public PoC. Hunt for anomalous admin sessions or policy changes originating from the FMC host.&lt;/li>
&lt;li>&lt;strong>Leader — Plan:&lt;/strong> Verify whether your network security team runs Cisco Secure FMC and confirm patching is underway; a max-severity auth bypass in a firewall management platform could expose the entire perimeter policy to attacker control, which is a board-level risk if unmitigated.&lt;/li>
&lt;li>&lt;strong>Signals:&lt;/strong> CVE-2026-20079 — CISA KEV: listed, EPSS 0.75, public PoC on GitHub, reported by 2 collected sources&lt;/li>
&lt;/ul></description></item></channel></rss>