Fortinet Warned as Three Critical FortiSandbox Bugs Come Under Attack

Three FortiSandbox flaws, including one patched last week, are being actively exploited, highlighting the shrinking window for defenders. Cybersecurity firm Defused Cyber confirmed it’s seen active exploitation of three vulnerabilities in Fortinet FortiSandbox within a 24-hour window. Two of them had patches sitting available since April. The third got fixed last week, which, apparently, wasn’t […]

June 16, 2026
Read More >>

CVE-2026-20262: CISCO Catalyst SD-WAN Flaw Under Active Targeted Exploitation

Cisco warned that CVE-2026-20262, a Catalyst SD-WAN Manager vulnerability allowing arbitrary file writes, is being actively exploited. Cisco confirmed active exploitation of CVE-2026-20262, an arbitrary file write vulnerability affecting Catalyst SD-WAN Manager. CVE-2026-20262 (CVSS score of 6.5) is an arbitrary file write vulnerability in the web interface of Cisco Catalyst SD-WAN Manager. The flaw is […]

June 16, 2026
Read More >>

Software Talmud, Safety as Grief

I read an essay called “Software Talmud #00” about software development that felt like a hall of mirrors. It is a pile of quotations that argue against making piles. I found that amusing, to say the least. It invokes the Talmud, which it de…

June 16, 2026
Read More >>

The Sad Story of ZAP Electric Cars

Remember that one time in America an electric car inventor got pushed out of his own company by a wealthy charlatan, who went on to lying to investors all the way to bankruptcy? Like so many others, he thought electric vehicles (EVs) were the obvious a…

June 16, 2026
Read More >>

U.S. CISA adds Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities (KEV) catalog. The two flaws added to the catalog are: CVE-2026-20262 is an arbitrary […]

June 16, 2026
Read More >>

flyingpenguin.com reaches 7,000 posts

We have reached 7,000 posts since 1995, which got me thinking… I may forever remain unpopular, unwelcome to EFF slush parties in their mansion, or unable to win a coveted Forbes 100 under 100, but I hope my history professors will be proud and my…

June 16, 2026
Read More >>