top of page

The Security Brief


SonicWall SMA 1000 Zero-Days: Remote Access Appliances Turned Into Backdoors
Two zero-day vulnerabilities in SonicWall's SMA 1000 remote access appliances are being exploited in the wild, and attackers are using the appliances themselves as a route into corporate networks. SonicWall confirmed active exploitation on 14 July. CISA followed within days, adding both flaws to its Known Exploited Vulnerabilities catalogue and giving US federal agencies until 17 July to patch or disconnect the devices. What Happened The two flaws are CVE-2026-15409, an unaut
Jul 213 min read
Â
Â
Â


CVE-2026-8451: A New NetScaler Memory Leak, Exploited Within a Day
Citrix patched a new NetScaler flaw on 30 June. Attackers were exploiting it within 24 hours. CVE-2026-8451 is a pre-authentication memory leak in the same family as CitrixBleed, the 2023 bug that fed a wave of intrusions worldwide. The gap between a vendor advisory and mass scanning is now measured in hours, not weeks. What Happened On 30 June, Citrix published bulletin CTX696604, disclosing six vulnerabilities in NetScaler ADC and NetScaler Gateway. The one drawing scrutiny
Jul 113 min read
Â
Â
Â


SharePoint RCE Under Active Attack: What CVE-2026-45659 Means for On-Premises Servers
CISA has confirmed that attackers are exploiting a remote code execution flaw in Microsoft SharePoint Server, and it has told United States federal agencies to patch by 4 July. The bug, CVE-2026-45659, carries a CVSS score of 8.8 and needs nothing more than a low-privileged account to work. For any Australian organisation still running SharePoint on-premises, that deadline is worth watching just as closely. What Happened On 1 July, CISA added CVE-2026-45659 to its Known Explo
Jul 83 min read
Â
Â
Â
bottom of page