{"total":3,"items":[{"id":350,"title":"Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use","original_title":"Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use","source_rating":null,"summary":"Ransomware incidents in Japan rose 4.7% year over year. The Gentlemen was the most active group, with leak-site listings more than doubling from January to July. Qilin ranked second and appeared to…","ai":false,"actions":[],"url":"https://blog.talosintelligence.com/ransomware-incidents-in-japan-in-the-first-half-of-2026/","type":"research","language":"en","published_at":"2026-09-17T10:00:43+00:00","severity":"middel","priority":42,"vendors":["Cisco"],"cves":[{"id":"CVE-2020-1472","cvss":5.5,"epss":0.99389,"epss_percentile":0.9994,"in_kev":true,"kev_ransomware":true},{"id":"CVE-2025-24799","cvss":9.8,"epss":0.86692,"epss_percentile":0.99738,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2025-2479","cvss":6.1,"epss":0.00335,"epss_percentile":0.24583,"in_kev":false,"kev_ransomware":false}],"cve_count":3,"in_kev":true,"exploited_by":["CISA KEV"],"kev_ransomware":true,"cvss_max":9.8,"epss_max":0.99389,"source_count":1,"ncsc":null,"source":{"slug":"talos","name":"Cisco Talos Intelligence","category":"onderzoek","country":null,"license":"© Cisco Talos","reuse":"excerpt"},"bundle":null},{"id":250,"title":"Cisco Secure Firewall Management Center Software Static Credential Vulnerability","original_title":"Cisco Secure Firewall Management Center Software Static Credential Vulnerability","source_rating":null,"summary":"A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-static-cred-BET3Cjh?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Management%20Center%20Software%20Static%20Credential%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:05:47+00:00","severity":"hoog","priority":60,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20316","cvss":5.3,"epss":0.35096,"epss_percentile":0.98397,"in_kev":true,"kev_ransomware":true}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":true,"cvss_max":5.3,"epss_max":0.35096,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":353,"title":"Active exploitation of Cisco Secure Firewall Management Center vulnerabilities","original_title":"Active exploitation of Cisco Secure Firewall Management Center vulnerabilities","source_rating":null,"summary":"Cisco Talos is actively tracking the exploitation of two vulnerabilities in Cisco’s Secure Firewall Management Center (FMC) Software.","ai":false,"actions":[],"url":"https://blog.talosintelligence.com/fmc-ongoing-exploitation/","type":"research","language":"en","published_at":"2026-09-09T16:08:59+00:00","severity":"hoog","priority":52,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20079","cvss":10.0,"epss":0.8818,"epss_percentile":0.99765,"in_kev":true,"kev_ransomware":false},{"id":"CVE-2026-20316","cvss":5.3,"epss":0.35096,"epss_percentile":0.98397,"in_kev":true,"kev_ransomware":true}],"cve_count":2,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":true,"cvss_max":10.0,"epss_max":0.8818,"source_count":3,"ncsc":null,"source":{"slug":"talos","name":"Cisco Talos Intelligence","category":"onderzoek","country":null,"license":"© Cisco Talos","reuse":"excerpt"},"bundle":null}]}