AUTO-UPDATED

Week in review: Cisco SD-WAN 0-day exploited, Patch Tuesday forecast

Cybersecurity professionals are managing a surge in active exploits, including critical vulnerabilities in Cisco SD-WAN and Windows Netlogon, while navigating the growing security risks posed by autonomous AI agents.

Key Points

  • Cisco Catalyst SD-WAN Manager is currently under attack via an unpatched 0-day privilege escalation vulnerability (CVE-2026-20245).
  • A critical Windows Netlogon remote code execution flaw (CVE-2026-41089) is being actively exploited, threatening domain controller security.
  • Researchers identified that nearly 90% of production AI agents lack sufficient security, leaving them vulnerable to hostile document takeovers.
  • A proof-of-concept AI-driven worm has been developed that can autonomously reason and strategize attacks against corporate networks.
  • Dashlane confirmed a brute-force attack resulted in unauthorized access to user accounts and the theft of encrypted password vaults.

Why it Matters

The rapid integration of autonomous AI agents into enterprise workflows is outpacing current security frameworks, creating new, unpredictable attack surfaces. Organizations must balance the pressure to innovate with the reality that existing vulnerabilities and AI-specific threats are being weaponized faster than traditional defenses can respond.
Help Net Security Published by Help Net Security
Read original