{"schema":"hottub-news/list/v1","item_schema":"hottub-news/item/v1","count":11,"sponsored":0,"items":[{"id":"n_c436amf7e2bvhhpz6gdq","seq":1475689,"kind":"article","title":"CISA警示FortiMail漏洞CVE-2026-104286已遭實際利用","title_en":"CISA warns that FortiMail vulnerability CVE-2026-104286 has been exploited","url":"https://www.ithome.com.tw/news/179386","summary":"新聞 美國網路與基礎設施安全局（CISA）維護的已知遭利用漏洞清單（KEV）， 10月1日新增CVE-2026-104286 ，這是存在Fortinet郵件安全閘道設備FortiMail的路徑遍歷漏洞，聯邦政府各民事執行單位須在10月4日前完成修補。 根據CISA公告當中的說明，CVE-2026-104286問題出在FortiMail存在路徑遍歷漏洞，以及對NULL位元組或NULL字元處理不當的漏洞，未經身分驗證的攻擊者可發出特製的 HTTP 或 HTTPS 請求，趁機在底層系統上寫入任意檔案。 CVE-2026-104286也收錄在 美國國家弱點資料庫（NVD） 與 MITRE維護的CVE網站 ，關於漏洞的成因描述是特定路徑名稱對受限目錄的限制不當（亦即路徑遍歷），其CVSS嚴重程度被評為9.8分，當中列出的受影響版本包括FortiMail的8.0.0至8.0.1版、7.6.0至7.6.6版、7.4.0至7.4.8版、7.2.0至7.2.9版。 10月1日Fortinet也發布 此漏洞的公告FG-IR-26-175…","published":"2026-10-03T03:59:17Z","seen":"2026-10-03T04:41:09Z","lang":"zh","country":"TW","source":{"id":"kite-ithome-com-tw-c23d09","name":"ithome.com.tw","domain":"ithome.com.tw","outlet":{"wikidata":"Q123398745","name":"iThome","type":"magazine","country":"TW","designations":["magazine","news website"]}},"via":"kite-ithome-com-tw-c23d09","authors":["李宗翰"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_c436amf7e2bvhhpz6gdq","category":"science-technology","category_p":0.45,"category2":"crime-law","sentiment":"negative","tone":-0.58,"political":0.22},{"id":"n_2y7ydt3dqlorcnl3av4a","seq":1437425,"kind":"article","title":"CISA Sends Final CIRCIA Rule to White House for Review","url":"https://www.govinfosecurity.com/cisa-sends-final-circia-rule-to-white-house-for-review-a-33008","published":"2026-10-02T21:52:31Z","seen":"2026-10-02T21:52:31Z","lang":"en","source":{"id":"govinfosecurity.com","name":"govinfosecurity.com","domain":"govinfosecurity.com"},"via":"gdelt-gkg-english","topics":["politics","technology","economy","security"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_2y7ydt3dqlorcnl3av4a","category":"politics","category_p":0.85,"sentiment":"neutral","tone":-0.22,"political":0.93},{"id":"n_66t4qak7kb2lz5kl776q","seq":1450601,"kind":"article","title":"CISA Fixes Malcolm Tool - ISSSource","url":"https://www.isssource.com/cisa-fixes-malcolm-tool","published":"2026-10-02T19:45:00Z","seen":"2026-10-02T23:54:49Z","lang":"en","source":{"id":"isssource.com","name":"isssource.com","domain":"isssource.com"},"via":"gdelt-gkg-english","topics":["technology","economy"],"authors":["gHale"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_66t4qak7kb2lz5kl776q","category":"science-technology","category_p":0.79,"sentiment":"neutral","tone":-0.05,"political":0.16},{"id":"n_63rmbphjww3ximgyappa","seq":1441194,"kind":"article","title":"CISA Adds Two Known Exploited Vulnerabilities to Catalog","url":"https://www.cisa.gov/news-events/alerts/2026/10/02/cisa-adds-two-known-exploited-vulnerabilities-catalog","summary":"CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-102489 Zammad GmbH Zammad Session Fixation Vulnerability CVE-2026-102490 Zammad GmbH Zammad Improper Privilege Management Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing…","published":"2026-10-02T12:00:00Z","seen":"2026-10-02T22:37:04Z","lang":"en","source":{"id":"kite-cisa-gov-252287","name":"cisa.gov","domain":"cisa.gov"},"via":"kite-cisa-gov-252287","topics":["cybersecurity"],"authors":["CISA"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_dw7pqquexillxrrme5qq","category":"science-technology","category_p":0.39,"category2":"crime-law","sentiment":"neutral","tone":-0.38,"political":0.08},{"id":"n_a5gourkqyqj3firjcfqa","seq":1118449,"kind":"article","title":"CISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEV","url":"https://thehackernews.com/2026/10/cisa-adds-exploited-cisco-catalyst-sd.html","summary":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst SD-WAN Manager to its Known Exploited Vulnerabilities (KEV), following reports of active exploitation. The vulnerability, tracked as CVE-2026-76504 (CVSS score: 9.8), could allow an unauthenticated, remote attacker to access an affected system with","published":"2026-10-01T10:33:16Z","seen":"2026-10-01T11:05:37Z","lang":"en","source":{"id":"kite-feedburner-com-5fa171","name":"feedburner.com","domain":"feeds.feedburner.com"},"via":"kite-feedburner-com-5fa171","topics":["cybersecurity"],"authors":["author"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"image":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj8jgm3LMY2zr1S1DmXnvVEPDiTKYR5FXHW7q_6duG1lVPhzbW2ZfJwRM9glqAJrQhBX3HAAiksz-tUpRN4pfT9VWHUksa-1SgHZmKcNUd1tJfsyFiwhtezZN_zBM_cEmqjkECI_2gfWhnqZ1ry2hgDou-qQCB21zbl1RzYN9JB0bRjqzhB2m6gBomg-ow9/s1600/cisa-wan.jpg","mentions":2,"story":"st_ruag2gy4dna6mtrtbsea","category":"science-technology","category_p":0.57,"sentiment":"neutral","tone":-0.17,"political":0.3},{"id":"n_5euftyb27w7axqm5oulq","seq":806843,"kind":"article","title":"美國CISA要求聯邦機構緊急修補蘋果裝置零時差漏洞","title_en":"US CISA requires federal agencies to urgently patch zero-day vulnerabilities in Apple devices","url":"https://www.ithome.com.tw/news/179285","summary":"新聞 9月28日蘋果發布iOS、iPadOS，以及macOS作業系統 26.7.1更新 ，緊急修補圖形處理框架元件CoreGraphics漏洞CVE-2026-86950，隔天 美國網路安全與基礎設施安全局（CISA）表示 ，他們已經掌握該弱點遭積極利用的證據，將其列入已遭利用的漏洞名單（KEV），聯邦機構需在 10月2日前 完成修補。 CVE-2026-86950 為記憶體越界寫入弱點，CISA-ADP評估其CVSS嚴重程度評分為8.8。蘋果在資安公告裡提及，該弱點疑似被用於極度複雜的針對性攻擊，鎖定未升級iOS 27的iPhone用戶。","published":"2026-09-30T01:49:46Z","seen":"2026-09-30T02:33:18Z","lang":"zh","country":"TW","source":{"id":"kite-ithome-com-tw-c23d09","name":"ithome.com.tw","domain":"ithome.com.tw","outlet":{"wikidata":"Q123398745","name":"iThome","type":"magazine","country":"TW","designations":["magazine","news website"]}},"via":"kite-ithome-com-tw-c23d09","authors":["周峻佑"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"},{"id":"Q89","name":"apple","type":"org"}],"story":"st_5euftyb27w7axqm5oulq","category":"science-technology","category_p":0.67,"sentiment":"negative","tone":-0.51,"political":0.31},{"id":"n_o2z2xa6rflakvialuzma","seq":591799,"kind":"article","title":"美國CISA警告Citrix NetScaler重大漏洞遭積極利用","title_en":"US CISA warns of active exploitation of major Citrix NetScaler vulnerability","url":"https://www.ithome.com.tw/news/179258","summary":"新聞 9月27日美國網路安全與基礎設施安全局（CISA）提出警告， 他們已掌握兩個Citrix NetScaler重大漏洞遭積極利用的證據 ，將其加入已遭利用的漏洞名單（KEV），並要求聯邦機構必須在9月30日前完成修補。這些漏洞是：輸入驗證不當漏洞CVE-2026-88771，以及記憶體緩衝區操作限制不當漏洞CVE-2026-88772。 上述漏洞的CVSS v4.0嚴重程度評分皆達到9.5分，相當危險，攻擊者可在不需取得授權的情況下，利用 CVE-2026-88771 執行任意程式碼；另一個弱點 CVE-2026-88772 ，攻擊者不僅能用於遠端程式碼執行（RCE）攻擊，也可能造成阻斷服務（DoS）的現象。","published":"2026-09-29T04:57:24Z","seen":"2026-09-29T06:09:59Z","lang":"zh","country":"TW","source":{"id":"kite-ithome-com-tw-c23d09","name":"ithome.com.tw","domain":"ithome.com.tw","outlet":{"wikidata":"Q123398745","name":"iThome","type":"magazine","country":"TW","designations":["magazine","news website"]}},"via":"kite-ithome-com-tw-c23d09","authors":["周峻佑"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_2wujuu3lbujsiev5mqjq","category":"science-technology","category_p":0.67,"sentiment":"negative","tone":-0.69,"political":0.28},{"id":"n_5yqdb3adkur3tqhsqkta","seq":591803,"kind":"article","title":"CISA警告甫修補的WordPress重大路徑遍歷漏洞遭到利用","title_en":"CISA warns of newly patched WordPress path traversal vulnerability being exploited","url":"https://www.ithome.com.tw/news/179254","summary":"新聞 上週WordPress開發團隊 修補重大漏洞CVE-2026-87902 ，不到一天 資安公司Patchstack偵測到嘗試利用活動 ，週末美國網路安全與基礎設施安全局（CISA） 也確認該弱點遭到利用的情形 。 9月25日CISA將CVE-2026-87902 列入已遭利用的漏洞名單（KEV） ，原因是他們已掌握該弱點被積極利用的證據，並要求聯邦機構必須在 9月28日前 完成修補。CVE-2026-87902為遠端檔案包含漏洞，攻擊者在無須通過身分驗證的情況下，可試圖讓網頁範本解析機制包含可讀取的本機PHP檔案，只要網頁伺服器與已啟用的佈景主題符合特定條件，攻擊者就能遠端執行任意程式碼（RCE），CVSS v4.0嚴重程度評為9.2分。","published":"2026-09-29T04:24:46Z","seen":"2026-09-29T06:09:59Z","lang":"zh","country":"TW","source":{"id":"kite-ithome-com-tw-c23d09","name":"ithome.com.tw","domain":"ithome.com.tw","outlet":{"wikidata":"Q123398745","name":"iThome","type":"magazine","country":"TW","designations":["magazine","news website"]}},"via":"kite-ithome-com-tw-c23d09","authors":["周峻佑"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_5yqdb3adkur3tqhsqkta","category":"science-technology","category_p":0.42,"sentiment":"negative","tone":-0.59,"political":0.21},{"id":"n_gfdjjlfyb2lzji2qmmua","seq":546250,"kind":"article","title":"NIST公布OT安全指南草案，CISA與FBI示警第三方ICS整合商風險","title_en":"NIST releases draft OT security guidelines, CISA and FBI warn of third-party ICS integration risks","url":"https://www.ithome.com.tw/news/179234","summary":"新聞 美國多州水務與廢水處理設施近來接連 遭到網路攻擊 ， 科羅拉多州 兩家供水企業更遭攻擊者直接修改設備設定。美國政府近期也針對營運科技（OT）安全採取新動作， NIST公布新版OT安全指南初步草案 ， CISA與FBI 則提醒關鍵基礎設施業者留意第三方ICS整合商的安全風險。 NIST在新版OT安全指南草案中擴充不同領域的介紹，包括建築自動化與控制系統、供水與廢水系統，以及工業物聯網（IIoT）與雲端融合等內容，並改以網路安全框架CSF 2.0重新編排。新版也擴充OT資產管理、網路監控與偵測等安全控制實作指引，並加入系統管理功能保護與零信任原則等安全架構內容。草案目前徵詢意見至11月30日。 CISA與FBI也以2025年的實際入侵事件示警，外國網路攻擊者入侵一家美國工業自動化解決方案業者，並建立9個ZIP壓縮檔，其中包含約800個檔案，涉及客戶SCADA資訊、ICS設備詳細資料及相關系統圖，研判攻擊者可能打算將這些資料外傳。這起事件凸顯第三方ICS整合商遭入侵後，客戶OT環境資訊也可能面臨風險。…","published":"2026-09-29T00:00:00Z","seen":"2026-09-29T00:05:23Z","lang":"zh","country":"TW","source":{"id":"kite-ithome-com-tw-c23d09","name":"ithome.com.tw","domain":"ithome.com.tw","outlet":{"wikidata":"Q123398745","name":"iThome","type":"magazine","country":"TW","designations":["magazine","news website"]}},"via":"kite-ithome-com-tw-c23d09","authors":["王珮瑤"],"entities":[{"id":"Q176691","name":"National Institute of Standards and Technology","type":"org"},{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"},{"id":"Q8333","name":"Federal Bureau of Investigation","type":"org"}],"story":"st_gfdjjlfyb2lzji2qmmua","category":"science-technology","category_p":0.53,"category2":"economy-business","sentiment":"neutral","tone":-0.38,"political":0.4},{"id":"n_lzgzwq3vzybaqdonqkra","seq":526849,"kind":"article","title":"CISA publishes its first Wärtsilä advisory after Cydome finds critical flaw in Wärtsilä's FOS software","url":"https://www.hellenicshippingnews.com/cisa-publishes-its-first-wartsila-advisory-after-cydome-finds-critical-flaw-in-wartsilas-fos-software","published":"2026-09-28T21:39:13Z","seen":"2026-09-28T21:39:13Z","lang":"en","source":{"id":"hellenicshippingnews.com","name":"hellenicshippingnews.com","domain":"hellenicshippingnews.com"},"via":"gdelt-gkg-english","topics":["economy","technology"],"authors":["hellenicshippingnews..."],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"},{"id":"Q327429","name":"Wärtsilä","type":"org"},{"id":"Q1349025","name":"Fos","type":"other"}],"story":"st_lzgzwq3vzybaqdonqkra","category":"science-technology","category_p":0.62,"category2":"economy-business","sentiment":"neutral","tone":-0.62,"political":0.09},{"id":"n_gq2fmdo2555efjezjyfa","seq":539298,"kind":"article","title":"CISA Details CVE Program Shift From Growth to Quality Era","url":"https://www.executivegov.com/articles/cisa-cve-program-quality-era-cyber","published":"2026-09-28T20:53:00Z","seen":"2026-09-28T23:09:12Z","lang":"en","source":{"id":"executivegov.com","name":"executivegov.com","domain":"executivegov.com"},"via":"gdelt-gkg-english","topics":["economy","technology"],"entities":[{"id":"Q5205058","name":"Cybersecurity and Infrastructure Security Agency","type":"org"}],"story":"st_gq2fmdo2555efjezjyfa","category":"economy-business","category_p":0.39,"category2":"science-technology","sentiment":"neutral","tone":0.33,"political":0.12}]}