SECURITY·중요도 9·2026. 09. 11.·The Hacker News

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

── KO ──────────────────

시스코 FMC 취약점이 공격에 이용되어 자격증명이 도용되고 있다.

시스코는 최근 패치된 Secure Firewall Management Center(FMC)에서 세 가지의 위협 클러스터가 랜섬웨어 및 국가 지원 공격에 이용되고 있다고 밝혔다. 특히, CVE-2026-20079라는 인증 우회 취약점이 원격 공격자가 인증 없이 시스템에 접근할 수 있게 한다. 이로 인해 자격증명이 탈취되고 Qilin 랜섬웨어가 배포되고 있다.


── EN ──────────────────

Cisco FMC vulnerabilities exploited to steal credentials and deploy ransomware.

Cisco has disclosed that three distinct threat clusters linked to ransomware and state-sponsored attacks are exploiting two recently patched vulnerabilities in the Secure Firewall Management Center (FMC). In particular, CVE-2026-20079, an authentication bypass vulnerability, allows unauthenticated remote attackers to gain access to the system. This has resulted in credential theft and the deployment of Qilin ransomware.

원문 보기 →목록으로