πŸ” Security Pulse Β· 2026-09-05 16:00 UTC

⚑ TL;DR

SonicWall Network Security Manager (NSM) suffers multiple critical vulnerabilities allowing privilege escalation and unauthorized file extraction, placing network security appliances at high risk. Overall threat level elevated due to active malware campaigns targeting US logistics firms.

πŸ” CYBER THREATS

  • πŸ”΄πŸ”΄πŸ”΄ SonicWall NSM On-Prem Management interface affected by multiple severe vulnerabilities including missing authorization (CVE-2026-78328) and Zip Slip file extraction (CVE-2026-81939), risking admin privilege escalation and remote file compromise in critical network security infrastructure [1] [2].
  • πŸ”΄πŸ”΄ Active malware campaign leveraging Ethereum smart contracts for C2 resolution is live and evolving, recently targeting US trucking companies handling food logistics, indicating intent to disrupt supply chains (threat actor unknown) [3] [4].
  • 🟑 Watch PassMark software suite (PerformanceTest, BurnInTest, OSForensics) has multiple privilege escalation, hard-coded credential, and information disclosure vulnerabilities (CVE-2026-80113 to CVE-2026-80119), threatening endpoint integrity [5] [6] [7] [8] [9] [10].
  • 🟑 Watch Amazon EFS CSI Driver vulnerable to storage access point ownership flaws enabling authenticated Kubernetes users to delete volumes (CVE-2026-85781), risking container orchestration disruption.
  • 🟑 Watch MISP threat intelligence platform has multiple flaws in authorization and CSRF functionalities allowing privilege bypass and attribute deletion by authenticated users (CVE-2026-85533, CVE-2026-85538, CVE-2026-85546).
  • 🟑 Watch Nebula-mesh VPN control plane prior to v0.3.8 suffers from authorization gaps and plaintext session token storage, enabling trust mismanagement and operator session compromise (CVE-2026-53602, CVE-2026-53603).
  • 🟑 Watch Snowflake drivers impacted by improper OCSP response validation (CVE-2026-85525) and credential-related auto-configuration flaws (CVE-2026-85528), exposing TLS certificate and login vulnerabilities.

πŸ›‘οΈ NATIONAL SECURITY

  • 🟒 No new military movements or direct espionage activities reported within past 24 hours. No critical infrastructure attacks or defence policy shifts detected.
  • 🟒 Cyber threats impacting supply chain logistics (trucking companies in US) pose indirect national security risk due to potential disruption of food delivery networks [4].

⚠️ RISK FLAGS

  • ⚠️⚠️ SonicWall NSM vulnerabilities represent an immediate high-risk security gap in network perimeter defence, requiring urgent patching and monitoring [1] [2].
  • ⚠️ Active live malware using blockchain-based C2 targeting logistics firms signals an emerging campaign with potential to disrupt critical supply chain operations in the US [3] [4].
  • ⚠️ Ongoing DDoS attack against vx-underground malware repository limits researcher access and obscures threat intelligence sharing, impeding incident response capabilities.

🧭 THREAT MOOD

  • elevated
  • Cyber threat environment shows increasing sophistication and targeting of critical infrastructure support systems, with active exploitation possibilities. Defensive vigilance and rapid patch deployment recommended.

πŸ“Ž Sources

  1. CVE-2026-78328 A missing authorization vulnerability in the So… β€” @CVEnew
  2. CVE-2026-81939 A Zip Slip vulnerability in the SonicWall Netwo… β€” @CVEnew
  3. This is really exciting malware actually. tl;dr they're updat… β€” @vxunderground
  4. tl;dr strange, strange, strange goop targeting trucking compan… β€” @vxunderground
  5. CVE-2026-80113 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew
  6. CVE-2026-80112 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew
  7. CVE-2026-80114 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew
  8. CVE-2026-80115 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew
  9. CVE-2026-80116 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew
  10. CVE-2026-80117 PassMark PerformanceTest before 11.1 build 1012… β€” @CVEnew

Educational & informational only β€” not financial advice. Markets carry risk; do your own research.
Serial 20260905-16-v61 Β· 2026-09-05 16:00 UTC Β· pulse.uzylab.com