03/04/2026
đ¨ Malicious cyber actors are targeting and compromising Cisco SD-WAN systems deployed by organizations worldwide.
These actors have exploited a previously undisclosed authentication bypass vulnerability, CVE-2026-20127, for initial access before escalating privileges using CVE-2022-20775 and establishing long-term persistence in Cisco SD-WAN systems.
The FBI urges network defenders to fully patch Cisco SD-WAN systems and hunt for evidence of compromise. Find info and resources from CISA đ https://www.cisa.gov/news-events/alerts/2026/02/25/cisa-and-partners-release-guidance-ongoing-global-exploitation-cisco-sd-wan-systems