Close Menu
NCIJ Network NCIJ Network
    What's Hot

    G-7 Agrees to Release Emergency Diesel Stockpiles to Rein in High Fuel Costs

    October 2, 2026

    French media respond to M. Le Pen’s ‘Kevlar suit’ comments against investigative outlet

    October 2, 2026

    England school inspections to be overhauled again after barrage of complaints | Schools

    October 2, 2026
    Facebook X (Twitter) Instagram
    Trending
    • G-7 Agrees to Release Emergency Diesel Stockpiles to Rein in High Fuel Costs
    • French media respond to M. Le Pen’s ‘Kevlar suit’ comments against investigative outlet
    • England school inspections to be overhauled again after barrage of complaints | Schools
    • Netflix is pivoting away from prestige
    • Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign
    • Wall Street giant BNY discusses infrastructure tie-up with Kraken parent Payward
    • Hawaii’s iconic 500-year-old Hōlei Sea Arch has collapsed into the sea
    • Europe’s Extreme Summer Triggered Cascading Climate Shocks
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Friday, October 2
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Cisco warns of ASA and FTD VPN flaw exploited to crash devices

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKAugust 11, 2026 Cybersecurity No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cisco is warning that a high-severity denial-of-service vulnerability in Secure Firewall ASA and Threat Defense (FTD) software is being actively exploited in attacks to remotely crash affected devices.

    The flaw, tracked as CVE-2026-20349, has a severity score of 8.6 and impacts devices running Cisco Secure Firewall Adaptive Security Appliance (ASA) or Secure Firewall Threat Defense (FTD) software with certain remote access services enabled.

    In a security advisory published today, Cisco said the vulnerability is caused by insufficient error checking while processing HTTP requests.

    image

    “An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device,” Cisco explains in the advisory.

    “A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.”

    The vulnerability can be exploited remotely without authentication or user interaction when SSL listen sockets are enabled.

    Vulnerable configurations include IKEv2 Remote Access VPN with client services, SSL VPN, and Zero Trust Network Access on FTD devices. Cisco says Secure Firewall Management Center (FMC) software is not affected.

    Cisco has released hot fixes for affected ASA 9.16, 9.18, 9.20, 9.22, 9.23, and 9.24 releases, as well as FTD releases 7.0, 7.2, 7.4, 7.6, 7.7, and 10.0.

    There are no workarounds for the vulnerability, and Cisco strongly recommends that customers upgrade to a fixed software release to fully remediate the issue.

    Cisco’s PSIRT says it became aware of active exploitation of CVE-2026-20349 in August 2026, but the company has not shared additional information about the attacks, including who is exploiting the vulnerability or what organizations are being targeted.

    The vulnerability was also discovered during Cisco’s internal security testing and independently reported to the company by security researcher Valerio Brussani.

    Cisco’s advisory does not provide indicators of compromise associated with the ongoing exploitation.

    The company also disclosed this month that Secure Endpoint Connector for Windows, Mac, and Linux is vulnerable to ClamAV vulnerabilities with public exploits.

    However, the patches are not available yet and will be released later this month.


    article image

    Overall prevention scores can hide what happens after initial access. Once attackers are using valid credentials, prevention drops sharply.

    The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.

    Get the report

    ASA Cisco crash devices Exploited Flaw FTD VPN warns
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

    Crypto Scammers Hijack Microsoft’s Official X Account

    Is It Fair to Blame ‘Rogue’ AI for Security Failures?

    GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers

    SWIFT Banking & Government Middleware Enables RCE

    In Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI Chats

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    G-7 Agrees to Release Emergency Diesel Stockpiles to Rein in High Fuel Costs

    October 2, 2026

    French media respond to M. Le Pen’s ‘Kevlar suit’ comments against investigative outlet

    October 2, 2026

    England school inspections to be overhauled again after barrage of complaints | Schools

    October 2, 2026

    Netflix is pivoting away from prestige

    October 2, 2026
    Latest Posts

    Lime bikes hurtling around the city: is this the revenge of a priced-out generation? | Andy Beckett

    August 8, 2026

    Clarity Act Delayed Until September, Trump Praises Bitcoin

    August 8, 2026

    North Carolina Ports confirms cyberattack disrupting operations

    August 8, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    G-7 Agrees to Release Emergency Diesel Stockpiles to Rein in High Fuel Costs

    October 2, 2026

    French media respond to M. Le Pen’s ‘Kevlar suit’ comments against investigative outlet

    October 2, 2026

    England school inspections to be overhauled again after barrage of complaints | Schools

    October 2, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.